Loading Joe Sandbox Report ...

Edit tour

Windows Analysis Report
https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/

Overview

General Information

Sample URL:https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/
Analysis ID:1397273

Detection

Score:52
Range:0 - 100
Whitelisted:false
Confidence:100%

Signatures

Phishing site detected (based on favicon image match)
Phishing site detected (based on image similarity)
Creates files inside the system directory
HTML body contains low number of good links
HTML title does not match URL
Stores files to the Windows start menu directory

Classification

  • System is w10x64_ra
  • chrome.exe (PID: 6808 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/ MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
    • chrome.exe (PID: 6992 cmdline: "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1988 --field-trial-handle=1952,i,12999724034407340664,16827589052740467915,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8 MD5: 45DE480806D1B5D462A7DDE4DCEFC4E4)
  • cleanup
No yara matches
No Sigma rule has matched
No Snort rule has matched

Click to jump to signature section

Show All Signature Results

Phishing

barindex
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1Matcher: Template: microsoft matched with high similarity
Source: https://mybenzzzuxor.onlineMatcher: Template: microsoft matched with high similarity
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1Matcher: Found strong image similarity, brand: MICROSOFT
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: Number of links: 0
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: Title: Sign in to your Microsoft account does not match URL
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: <input type="password" .../> found
Source: https://0ffice.mybenzzzuxor.online/login#HTTP Parser: No favicon
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="author".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="author".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="author".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="author".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="copyright".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="copyright".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="copyright".. found
Source: https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1HTTP Parser: No <meta name="copyright".. found
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.16:49717 version: TLS 1.2
Source: unknownHTTPS traffic detected: 96.16.24.155:443 -> 192.168.2.16:49718 version: TLS 1.2
Source: unknownHTTPS traffic detected: 96.16.24.155:443 -> 192.168.2.16:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.16:49829 version: TLS 1.2
Source: chrome.exeMemory has grown: Private usage: 7MB later: 32MB
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownUDP traffic detected without corresponding DNS query: 1.1.1.1
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 13.107.21.200
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 13.85.23.86
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 96.16.24.155
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 20.189.173.10
Source: unknownTCP traffic detected without corresponding DNS query: 204.79.197.203
Source: unknownDNS traffic detected: queries for: 0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online
Source: unknownNetwork traffic detected: HTTP traffic on port 49708 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49744
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49743
Source: unknownNetwork traffic detected: HTTP traffic on port 49817 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49742
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49741
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49740
Source: unknownNetwork traffic detected: HTTP traffic on port 49789 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49800 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49766 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49743 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49720 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49852 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49795 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49739
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49738
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49737
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49858
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49736
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49857
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49735
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49856
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49734
Source: unknownNetwork traffic detected: HTTP traffic on port 49772 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49855
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49733
Source: unknownNetwork traffic detected: HTTP traffic on port 49841 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49854
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49732
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49853
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49731
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49852
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49730
Source: unknownNetwork traffic detected: HTTP traffic on port 49732 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49851
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49850
Source: unknownNetwork traffic detected: HTTP traffic on port 49812 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49703 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49858 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49784 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49749 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49806 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49823 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49729
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49728
Source: unknownNetwork traffic detected: HTTP traffic on port 49777 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49849
Source: unknownNetwork traffic detected: HTTP traffic on port 49714 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49727
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49848
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49726
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49847
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49725
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49846
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49724
Source: unknownNetwork traffic detected: HTTP traffic on port 49790 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49845
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49723
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49844
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49722
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49721
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49842
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49720
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49841
Source: unknownNetwork traffic detected: HTTP traffic on port 49731 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49840
Source: unknownNetwork traffic detected: HTTP traffic on port 49834 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49748 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49760 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49828 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49805 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49719
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49718
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49839
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49717
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49838
Source: unknownNetwork traffic detected: HTTP traffic on port 49715 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49837
Source: unknownNetwork traffic detected: HTTP traffic on port 49847 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49715
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49836
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49714
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49835
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49834
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49833
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49711
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49710
Source: unknownNetwork traffic detected: HTTP traffic on port 49709 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49831
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49830
Source: unknownNetwork traffic detected: HTTP traffic on port 49839 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49822 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49726 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49765 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49853 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49796 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49709
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49708
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49829
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49707
Source: unknownNetwork traffic detected: HTTP traffic on port 49811 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49828
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49706
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49827
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49826
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49704
Source: unknownNetwork traffic detected: HTTP traffic on port 49754 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49825
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49703
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49824
Source: unknownNetwork traffic detected: HTTP traffic on port 49737 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49702
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49823
Source: unknownNetwork traffic detected: HTTP traffic on port 49771 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49701
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49822
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49788
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49787
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49786
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49785
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49784
Source: unknownNetwork traffic detected: HTTP traffic on port 49813 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49783
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49781
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49780
Source: unknownNetwork traffic detected: HTTP traffic on port 49836 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49785 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49807 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49701 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49776 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49845 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49736 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49791 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49759 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49753 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49779
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49778
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49777
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49776
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49775
Source: unknownNetwork traffic detected: HTTP traffic on port 49707 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49774
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49773
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49772
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49771
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49770
Source: unknownNetwork traffic detected: HTTP traffic on port 49724 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49742 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49780 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49802 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49851 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49830 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49718 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49769
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49768
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49767
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49766
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49765
Source: unknownNetwork traffic detected: HTTP traffic on port 49758 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49764
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49763
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49762
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49761
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49760
Source: unknownNetwork traffic detected: HTTP traffic on port 49840 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49702 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49725 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49741 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49857 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49764 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49770 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49719 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49797 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49801 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49824 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49759
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49758
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49757
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49756
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49755
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49754
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49753
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49752
Source: unknownNetwork traffic detected: HTTP traffic on port 49730 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49751
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49750
Source: unknownNetwork traffic detected: HTTP traffic on port 49818 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49835 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49786 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49747 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49829 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49775 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49749
Source: unknownNetwork traffic detected: HTTP traffic on port 49846 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49748
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49747
Source: unknownNetwork traffic detected: HTTP traffic on port 49792 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49746
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49745
Source: unknownNetwork traffic detected: HTTP traffic on port 49746 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49781 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49769 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49803 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49826 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49717 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49849 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49820 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49837 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49711 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49728 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49763 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49855 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49752 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49735 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49706 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49819 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49844 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49787 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49729 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49745 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49793 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49850 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49688 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49831 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49751 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49774 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49757 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49799
Source: unknownNetwork traffic detected: HTTP traffic on port 49734 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49797
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49796
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49795
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49794
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49793
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49792
Source: unknownNetwork traffic detected: HTTP traffic on port 49814 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49791
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49790
Source: unknownNetwork traffic detected: HTTP traffic on port 49740 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49856 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49768 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49723 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49825 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49808 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49789
Source: unknownNetwork traffic detected: HTTP traffic on port 49733 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49710 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49820
Source: unknownNetwork traffic detected: HTTP traffic on port 49842 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49779 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49727 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49704 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49762 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49833 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49819
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49818
Source: unknownNetwork traffic detected: HTTP traffic on port 49799 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49810 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49817
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49816
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49815
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49814
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49813
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49812
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49811
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49810
Source: unknownNetwork traffic detected: HTTP traffic on port 49816 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49788 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49767 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49721 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49794 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49827 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49809
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49808
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49807
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49806
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49805
Source: unknownNetwork traffic detected: HTTP traffic on port 49848 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49804
Source: unknownNetwork traffic detected: HTTP traffic on port 49773 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49803
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49802
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49801
Source: unknownNetwork traffic detected: HTTP traffic on port 49756 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49739 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 443 -> 49800
Source: unknownNetwork traffic detected: HTTP traffic on port 49783 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49838 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49678 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49815 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49722 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49854 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49809 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49778 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49755 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49738 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49673 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49761 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49804 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49744 -> 443
Source: unknownNetwork traffic detected: HTTP traffic on port 49750 -> 443
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.16:49717 version: TLS 1.2
Source: unknownHTTPS traffic detected: 96.16.24.155:443 -> 192.168.2.16:49718 version: TLS 1.2
Source: unknownHTTPS traffic detected: 96.16.24.155:443 -> 192.168.2.16:49719 version: TLS 1.2
Source: unknownHTTPS traffic detected: 13.85.23.86:443 -> 192.168.2.16:49829 version: TLS 1.2
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Windows\SystemTemp\chrome_BITS_6808_894486156
Source: classification engineClassification label: mal52.phis.win@14/69@74/123
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: unknownProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized --single-argument https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1988 --field-trial-handle=1952,i,12999724034407340664,16827589052740467915,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: C:\Program Files\Google\Chrome\Application\chrome.exe "C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US --service-sandbox-type=none --mojo-platform-channel-handle=1988 --field-trial-handle=1952,i,12999724034407340664,16827589052740467915,262144 --disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction /prefetch:8
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: C:\Program Files\Google\Chrome\Application\chrome.exeProcess created: unknown unknown
Source: Window RecorderWindow detected: More than 3 window changes detected
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
Source: C:\Program Files\Google\Chrome\Application\chrome.exeFile created: C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
ReconnaissanceResource DevelopmentInitial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Gather Victim Identity InformationAcquire InfrastructureValid AccountsWindows Management Instrumentation1
Registry Run Keys / Startup Folder
1
Process Injection
11
Masquerading
OS Credential DumpingSystem Service DiscoveryRemote ServicesData from Local System2
Encrypted Channel
Exfiltration Over Other Network MediumAbuse Accessibility Features
CredentialsDomainsDefault AccountsScheduled Task/JobBoot or Logon Initialization Scripts1
Registry Run Keys / Startup Folder
1
Process Injection
LSASS MemoryApplication Window DiscoveryRemote Desktop ProtocolData from Removable Media1
Non-Application Layer Protocol
Exfiltration Over BluetoothNetwork Denial of Service
Email AddressesDNS ServerDomain AccountsAtLogon Script (Windows)1
Extra Window Memory Injection
1
Extra Window Memory Injection
Security Account ManagerQuery RegistrySMB/Windows Admin SharesData from Network Shared Drive2
Application Layer Protocol
Automated ExfiltrationData Encrypted for Impact

This section contains all screenshots as thumbnails, including those not shown in the slideshow.


windows-stand
SourceDetectionScannerLabelLink
https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/0%Avira URL Cloudsafe
No Antivirus matches
No Antivirus matches
No Antivirus matches
No Antivirus matches
NameIPActiveMaliciousAntivirus DetectionReputation
cc9304a8-6ac99af7.mybenzzzuxor.online
45.155.249.178
truefalse
    unknown
    cbd95507-6ac99af7.mybenzzzuxor.online
    45.155.249.178
    truefalse
      unknown
      a31fd8ee-6ac99af7.mybenzzzuxor.online
      45.155.249.178
      truefalse
        unknown
        d1b8951f-6ac99af7.mybenzzzuxor.online
        45.155.249.178
        truefalse
          unknown
          d1129de7-6ac99af7.mybenzzzuxor.online
          45.155.249.178
          truefalse
            unknown
            0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online
            45.155.249.178
            truefalse
              unknown
              f36ce0dd-6ac99af7.mybenzzzuxor.online
              45.155.249.178
              truefalse
                unknown
                f945e7b4-6ac99af7.mybenzzzuxor.online
                45.155.249.178
                truefalse
                  unknown
                  e1e1882f-6ac99af7.mybenzzzuxor.online
                  45.155.249.178
                  truefalse
                    unknown
                    895ce2ae-6ac99af7.mybenzzzuxor.online
                    45.155.249.178
                    truefalse
                      unknown
                      www.google.com
                      142.250.65.196
                      truefalse
                        high
                        signup.mybenzzzuxor.online
                        45.155.249.178
                        truefalse
                          unknown
                          66e889bc-6ac99af7.mybenzzzuxor.online
                          45.155.249.178
                          truefalse
                            unknown
                            42cf6187-6ac99af7.mybenzzzuxor.online
                            45.155.249.178
                            truefalse
                              unknown
                              30d67532-6ac99af7.mybenzzzuxor.online
                              45.155.249.178
                              truefalse
                                unknown
                                0ffice.mybenzzzuxor.online
                                45.155.249.178
                                truefalse
                                  unknown
                                  accounts.google.com
                                  142.250.31.84
                                  truefalse
                                    high
                                    wwwms.mybenzzzuxor.online
                                    45.155.249.178
                                    truefalse
                                      unknown
                                      0e1d53f5-6ac99af7.mybenzzzuxor.online
                                      45.155.249.178
                                      truefalse
                                        unknown
                                        l1ve.mybenzzzuxor.online
                                        45.155.249.178
                                        truefalse
                                          unknown
                                          a16eff9d-6ac99af7.mybenzzzuxor.online
                                          45.155.249.178
                                          truefalse
                                            unknown
                                            1a095841-6ac99af7.mybenzzzuxor.online
                                            45.155.249.178
                                            truefalse
                                              unknown
                                              02f42375-6ac99af7.mybenzzzuxor.online
                                              45.155.249.178
                                              truefalse
                                                unknown
                                                60184e36-6ac99af7.mybenzzzuxor.online
                                                45.155.249.178
                                                truefalse
                                                  unknown
                                                  e7689af3-6ac99af7.mybenzzzuxor.online
                                                  45.155.249.178
                                                  truefalse
                                                    unknown
                                                    031d80f7-6ac99af7.mybenzzzuxor.online
                                                    45.155.249.178
                                                    truefalse
                                                      unknown
                                                      clients.l.google.com
                                                      142.251.40.206
                                                      truefalse
                                                        high
                                                        d1426b36-6ac99af7.mybenzzzuxor.online
                                                        45.155.249.178
                                                        truefalse
                                                          unknown
                                                          clients2.google.com
                                                          unknown
                                                          unknownfalse
                                                            high
                                                            clients1.google.com
                                                            unknown
                                                            unknownfalse
                                                              high
                                                              NameMaliciousAntivirus DetectionReputation
                                                              https://l1ve.mybenzzzuxor.online/login.srf?wa=wsignin1.0&rpsnv=21&ct=1708638067&rver=7.5.2146.0&wp=MBI_SSL&wreply=https:%2F%2Fd1426b36-6ac99af7.mybenzzzuxor.online%2Fauthredir%3Furl%3Dhttps%253a%252f%252fd1426b36-6ac99af7.mybenzzzuxor.online%253a443%252fcontactus%253fui%253den-US%2526rs%253den-US%2526ad%253dUS%26hurl%3DEmr2cKvO7dEgl7iDYPdaZOBBKcG2VuuwcfPlPlUnjPc%253d.VWy%252bIeFk4qxdHxV%252bDb2mXvpAJlunc6l1g6tGRFTHU9k%253d%26ipt%3D0%26sn%3Dalternate%26si%3D1%26wctx%3D90491d01-d546-443c-8d04-9c059e19e61b&lc=1033&id=288908&aadredir=1true
                                                                unknown
                                                                https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/false
                                                                  unknown
                                                                  https://0ffice.mybenzzzuxor.online/login#false
                                                                    unknown
                                                                    • No. of IPs < 25%
                                                                    • 25% < No. of IPs < 50%
                                                                    • 50% < No. of IPs < 75%
                                                                    • 75% < No. of IPs
                                                                    IPDomainCountryFlagASNASN NameMalicious
                                                                    1.1.1.1
                                                                    unknownAustralia
                                                                    13335CLOUDFLARENETUSfalse
                                                                    142.250.65.196
                                                                    www.google.comUnited States
                                                                    15169GOOGLEUSfalse
                                                                    142.251.40.206
                                                                    clients.l.google.comUnited States
                                                                    15169GOOGLEUSfalse
                                                                    142.250.80.67
                                                                    unknownUnited States
                                                                    15169GOOGLEUSfalse
                                                                    45.155.249.178
                                                                    cc9304a8-6ac99af7.mybenzzzuxor.onlineGermany
                                                                    34549MEER-ASmeerfarbigGmbHCoKGDEfalse
                                                                    142.250.64.74
                                                                    unknownUnited States
                                                                    15169GOOGLEUSfalse
                                                                    239.255.255.250
                                                                    unknownReserved
                                                                    unknownunknownfalse
                                                                    142.251.32.110
                                                                    unknownUnited States
                                                                    15169GOOGLEUSfalse
                                                                    142.250.72.99
                                                                    unknownUnited States
                                                                    15169GOOGLEUSfalse
                                                                    142.250.31.84
                                                                    accounts.google.comUnited States
                                                                    15169GOOGLEUSfalse
                                                                    IP
                                                                    192.168.2.16
                                                                    192.168.2.4
                                                                    192.168.2.102
                                                                    Joe Sandbox version:40.0.0 Tourmaline
                                                                    Analysis ID:1397273
                                                                    Start date and time:2024-02-22 22:40:15 +01:00
                                                                    Joe Sandbox product:CloudBasic
                                                                    Overall analysis duration:
                                                                    Hypervisor based Inspection enabled:false
                                                                    Report type:full
                                                                    Cookbook file name:defaultwindowsinteractivecookbook.jbs
                                                                    Sample URL:https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/
                                                                    Analysis system description:Windows 10 x64 22H2 with Office Professional Plus 2019, Chrome 117, Firefox 118, Adobe Reader DC 23, Java 8 Update 381, 7zip 23.01
                                                                    Number of analysed new started processes analysed:14
                                                                    Number of new started drivers analysed:0
                                                                    Number of existing processes analysed:0
                                                                    Number of existing drivers analysed:0
                                                                    Number of injected processes analysed:0
                                                                    Technologies:
                                                                    • EGA enabled
                                                                    Analysis Mode:stream
                                                                    Analysis stop reason:Timeout
                                                                    Detection:MAL
                                                                    Classification:mal52.phis.win@14/69@74/123
                                                                    • Exclude process from analysis (whitelisted): svchost.exe
                                                                    • Excluded IPs from analysis (whitelisted): 142.250.72.99, 34.104.35.123
                                                                    • Excluded domains from analysis (whitelisted): edgedl.me.gvt1.com, clientservices.googleapis.com
                                                                    • Not all processes where analyzed, report is missing behavior information
                                                                    • VT rate limit hit for: https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.mybenzzzuxor.online/
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Feb 22 20:40:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2673
                                                                    Entropy (8bit):3.988795140946773
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:3B3CD2B82F505AB09B52B15DF6F56E4A
                                                                    SHA1:4B5C81FF3B201CF8CDF1BCD2FB528389D852EC36
                                                                    SHA-256:DA877E6568FEE36D8874CBA75AE570EEB10B8F449AFBD03BE7B27B36E54D26EF
                                                                    SHA-512:5FD8D8DF9BB3DCFE30EF856DEF933F308AFF10CCA5802577EEB7A2C66FACBEE53D800E97077CA80A091D1F420E4ED2E31E2DB748D944694CA23A849C1F0CFD9E
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,......p..e..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VVX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Feb 22 20:40:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2675
                                                                    Entropy (8bit):4.004365992678269
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:1B1B59603DAAAB306E764F1414513293
                                                                    SHA1:3A82CE613DB95832B4C2B3072CD096726622503F
                                                                    SHA-256:B826F099082F065890E9FF1EDC90C57025DBA6C04BE21B2DB8A22E8C0F70B4CE
                                                                    SHA-512:50C2C5EE4B12B25AEB42F4F1427978A106D3C3A20352AD8867E4A7F477A27CE3FD45DCC2FF9215E8C04DFA0FA7EBA8F517A3E11164B7EEEFF14126EFE4BAF1B1
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,.....gb..e..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VVX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Fri Oct 6 08:05:01 2023, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2689
                                                                    Entropy (8bit):4.013814823983063
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:5421C24DD758C5CF6841552D126D5A8E
                                                                    SHA1:AF8FD4CA7E0BA3B82F272A6E09C77736B8FB57CB
                                                                    SHA-256:457ED0395702938CC50A4E7A0AF6571AF469F1C557C9A1B6CBD9E9940FAE9A1B
                                                                    SHA-512:8A0CE47C6034A01A0F0F0E177EDC2CB3FEA2AF22DBE256523F66CA51D38CD315BB8D43C6DE5ECB6B282C4B27F8D73E1DC6CDF218FDA5992203862FCA5E49EDB0
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,.....Y.04...N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VFW.E...........................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Feb 22 20:40:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2677
                                                                    Entropy (8bit):4.007047117095803
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:7881C2E67DF045CF11F3F03FB8B0C804
                                                                    SHA1:BDF3C3C473E2000BFECEE2BC1A3588830C947408
                                                                    SHA-256:AB45E28DB2118C67B32CB344F64B968CA23FF80637B3BB8A90073E46636FBE3C
                                                                    SHA-512:2900090591EDF21508C3A155BF10750789438306EB118BE1574241997D99E1F5AC6BD340DB20D5F201AF37BB9E1B1FDD767EA52EE2F775D59450CDA6A6817986
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,......Z..e..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VVX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Feb 22 20:40:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2677
                                                                    Entropy (8bit):3.992406577354193
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:9B2FCE5ED203163AFDA21053CAD79B82
                                                                    SHA1:E427E3C2B2F22FDF42555E0E1511812AF8347262
                                                                    SHA-256:AF062D50218915375F925C01DCD6817E9EF59DC488C4247387DCBBE98B557D64
                                                                    SHA-512:131AF37587D2B6CAC4CF6EAC5FA764571AC1DF2FD9270A4A8D43515DFAB803DCECEA2F1F80486F258E3352455324657BF65DDEA0E6BA589FE8B2C302550B2206
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,.....i..e..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VVX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Feb 22 20:40:48 2024, atime=Wed Sep 27 04:28:28 2023, length=1210144, window=hide
                                                                    Category:dropped
                                                                    Size (bytes):2679
                                                                    Entropy (8bit):4.0033913439592865
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:0A668657744A5BDCEED3E7EA2086CCD7
                                                                    SHA1:DCABF938D0911FC5C3A1C12484F7B8CD569B28FA
                                                                    SHA-256:5ACDC6839B5D09733EBBFB9114D9BE277743435CE55F35F83016B0640BE812BD
                                                                    SHA-512:F482BD844FAA741151BB1E20F0D321EF1604CAB3F7F7881B61FC82AA72A231A81FA86CEC70A0E6E48BB9F10582E7E06853AC23DF6918F42693686AC959F241AE
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:L..................F.@.. ...$+.,....]jN..e..N.Yr.... w......................1....P.O. .:i.....+00.../C:\.....................1.....FW.J..PROGRA~1..t......O.IVX......B...............J.........P.r.o.g.r.a.m. .F.i.l.e.s...@.s.h.e.l.l.3.2...d.l.l.,.-.2.1.7.8.1.....T.1.....CW.V..Google..>......CW.VVX......L.....................p+j.G.o.o.g.l.e.....T.1.....CW.V..Chrome..>......CW.VVX......M......................8..C.h.r.o.m.e.....`.1.....CW.V..APPLIC~1..H......CW.VVX............................."&.A.p.p.l.i.c.a.t.i.o.n.....n.2. w..;W.+ .CHROME~1.EXE..R......CW.VVX.............................H..c.h.r.o.m.e._.p.r.o.x.y...e.x.e.......j...............-.......i............=.......C:\Program Files\Google\Chrome\Application\chrome_proxy.exe..S.....\.....\.....\.....\.....\.....\.....\.....\.....\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.\.c.h.r.o.m.e._.p.r.o.x.y...e.x.e.*.C.:.\.P.r.o.g.r.a.m. .F.i.l.e.s.\.G.o.o.g.l.e.\.C.h.r.o.m.e.\.A.p.p.l.i.c.a.t.i.o.n.F
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):2722
                                                                    Entropy (8bit):4.361088502198173
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:CD9EE2CA7775E56460CECF58B817B4DF
                                                                    SHA1:CEC1E20279004FBDBDB39D43D424D12C83334DFF
                                                                    SHA-256:203E997DF941D18552009E3E6BBCC91DDE62F9FFD33F2BFA049829D41BF6DC55
                                                                    SHA-512:D742233B874E2D6A8168E7800EA69FD0CB1A03E8EC31904C31C392B3E94F2765FBFAF63B6679A4D7EAA3B61252F7E941B6E82642916F75843FEE61DEB9290664
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/sharepoint.64x64.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>SharePoint_64x</title><circle cx="29.92593" cy="20.59259" r="15.55556" fill="#036c70"/><circle cx="45.48148" cy="35.11111" r="13.48148" fill="#1a9ba1"/><circle cx="32" cy="46.51852" r="11.40741" fill="#37c6d0"/><path d="M33,20.33008V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.66992,49H20.85986c-.06982-.33008-.12988-.66016-.16992-1a8.2529,8.2529,0,0,1-.08984-1c-.01026-.16016-.01026-.31982-.01026-.48a11.41245,11.41245,0,0,1,7.04-10.54A15.56512,15.56512,0,0,1,14.37012,20.58984,14.77,14.77,0,0,1,14.58984,18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M34,20.33008V44.66992A3.36171,3.36171,0,0,1,30.66992,48h-9.98a8.2529,8.2529,0,0,1-.08984-1c-.01026-.16016-.01026-.31982-.01026-.48a11.41245,11.41245,0,0,1,7.04-10.54A15.56512,15.56512,0,0,1,14.37012,20.58984,14.77,14.77,0,0,1,14.58984,18c.0503-.33984.12012-.66992.2002-1H30.66992A3.34177,3.34177,0,0,1,34,20.33008Z" opacity="0.1"/><path d
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (31343), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):31343
                                                                    Entropy (8bit):5.2722229182784135
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B33765631526B920C709347130A3EE0A
                                                                    SHA1:37E20F20DC85BA5E7EDFF73BC5352B385048A41E
                                                                    SHA-256:908F3072AB74EA124FDA44EEF8648BB833ECA57589014E33E67510ED95B8F68D
                                                                    SHA-512:1EE816295B48B1449D39EDA4CDAEEA51BAE4AA188CC23A92901EED5896D8F0F8CCDF39DCDB7AF2F4F3983A38F96126FDB02F65522485237A192C34A8719A7709
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socbundles/support?v=wQ6h8fxDxdOJzNi0BdZ68uHrJgyoL0MFzt1hgrUl3L81
                                                                    Preview:function getParameterByName(n){n=n.replace(/[\[]/,"\\[").replace(/[\]]/,"\\]");var i=new RegExp("[\\?&]"+n+"=([^&#]*)"),t=i.exec(location.search);return t===null?"":decodeURIComponent(t[1].replace(/\+/g," "))}function ClientNavSearch(n){if(typeof n!="undefined"&&n!==null){try{occe.sendAwaClientSearchEvent(n)}catch(t){}n.href!=null&&(window.location.href=n.href)}}function ButtonAction(n){var i={actionType:"CL",behavior:n.behaviorId,content:{formnm:n.formnm?n.formnm:occe.getFormName(window),areaName:"inAppNavBar",contentId:n.contentId,contentName:n.contentName}},t,r,u;n.captureScrollDepth===!0&&(t=$(document).height(),maximumScrollDepth>t&&(maximumScrollDepth=t),i.content.scrolldepth=scrolldepth);r="0";u="1";typeof analytics=="object"&&window.analytics.capturePageAction(null,i,null);n.behaviorId==u&&history.back();n.behaviorId==r&&n.href&&(window.location.href=n.href)}var occe,maximumScrollDepth,$scrollWindow;(function(){"use strict";String.prototype.endsWith||(String.prototype.endsWith=
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):5486
                                                                    Entropy (8bit):4.634970930354963
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:55406AFE8C46523F598AE3DB72D89894
                                                                    SHA1:28C07235589CBAD645E548EEC4FA270A9ABFE923
                                                                    SHA-256:A1523DBA670C1BB1C37380776151211E37C2CB37425708F335316DA85A8572C2
                                                                    SHA-512:9B4276AE97C0A99F095A5313C8F6B3193730A7EF41F56AC5B10D4ECDF27DBED210652CAFB6E74F69EFA5875492F7D7519AAAD5C9B86099DE08B6F6CFD72D05D5
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" xmlns:xlink="http://www.w3.org/1999/xlink" viewBox="0 0 64 64"><defs><linearGradient id="a" x1="38" y1="33" x2="38" y2="56" gradientUnits="userSpaceOnUse"><stop offset="0" stop-color="#35b8f1"/><stop offset="1" stop-color="#28a8ea"/></linearGradient></defs><title>Outlook_64x</title><path d="M58.963,33.037a1.19075,1.19075,0,0,0-.57607-1.02619v-.00014l-.00626-.00362-.02279-.01331L39.62569,21.01765a2.55722,2.55722,0,0,0-.25114-.14728h-.00007a2.52872,2.52872,0,0,0-2.30451,0h-.00014a2.555,2.555,0,0,0-.25107.14728L18.08661,31.99378l-.02279.01331-.00626.00362v.00014a1.20191,1.20191,0,0,0,.02912,2.06945L36.81876,45.05642a2.58192,2.58192,0,0,0,.25107.14714l.00014.00014a2.52872,2.52872,0,0,0,2.30451,0l.00007-.00014a2.58419,2.58419,0,0,0,.25114-.14714L58.35777,34.0803A1.19026,1.19026,0,0,0,58.963,33.037Z" fill="#123b6d"/><rect x="19.55556" y="25.77778" width="12.44444" height="11.4074" fill="#0364b8"/><path d="M57,15V10.33333A2.35445,2.35445,0,0,0,54.625,8L
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (1382), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):1382
                                                                    Entropy (8bit):4.914565102620783
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:1B7BC5173F313BFBBE7E6CB3EBC836F6
                                                                    SHA1:568EDB8C88B647682B7700518CAA32AE83DB1463
                                                                    SHA-256:AB4F2860F59BE220ACEAF544AD750250B62812D1FF5470F695E4E2199CF77F81
                                                                    SHA-512:969CB0788437988ACF5F4D38310F4F09B61BDF138048CDD9503EFF0B9654F7511DDFC4404A4241248EF89BDB7B88E099AA591C24023ABE6B30D95AD19F174A83
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socbundles/topNav?v=PiaMaX84RXbSvkHn4dpAbEBHb5xeM63H1KMjCE1PFNI1
                                                                    Preview:(function(n){function t(){var t=n(".topNavActiveCategory:not(#topNavMobileDropdownButton)");t.children("a").attr("aria-expanded","false");t.children("a").attr("data-bi-bhvr","EXPAND");t.children("ul").removeClass("activeMenu");n(".topNavDropdownMenu").removeClass("activeMenu");t.removeClass("topNavActiveCategory")}function i(){var i=n("#topNavMobileDropdownButton");i.removeClass("topNavActiveCategory");i.children("a").attr("aria-expanded","false");i.children("a").attr("data-bi-bhvr","EXPAND");t();n("#topNavCategories").removeClass("activeMenu")}n(".topNavMobileCategory").click(function(){var t=n(this),r=t.hasClass("topNavActiveCategory");r?i():(t.addClass("topNavActiveCategory"),t.children("a").attr("aria-expanded","true"),t.children("a").attr("data-bi-bhvr","REDUCE"),n("#topNavCategories").addClass("activeMenu"))});n(".topNavCategory").click(function(){var i=n(this),r=i.hasClass("topNavActiveCategory");t();r||(i.addClass("topNavActiveCategory"),i.children("a").attr("aria-expanded","tr
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):7454
                                                                    Entropy (8bit):7.9091028128348615
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:DB5BB2BA86E5ACB63AB21261717317F3
                                                                    SHA1:9887E86F015155141F83735306292AD3B0B40734
                                                                    SHA-256:97661489AA70DD4D01783D05AD1D9A799326B9D5E77059B3BBDF58161AE23C54
                                                                    SHA-512:C4AED571FCC0062D12E710FA2119DE636E6C8B486BE93929B6C8062BF9181A3E9286D0147643E97F32E93F4DF6D6F2177BBBDEF345690F9DA2A45CD0C4C0EF5D
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/office.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:dropped
                                                                    Size (bytes):3931
                                                                    Entropy (8bit):7.923433133015326
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:584791E7F671A6F4AA02618C5F13A3A3
                                                                    SHA1:7927EAF963B64E813AA02AF3A47273E3C9196614
                                                                    SHA-256:4DAB312B470D84000E1DB663F65FE9C419D66F25E8D6DA61014A169872A274C4
                                                                    SHA-512:236B579615CCF23C169999BDF2EEF3D34D6B9F3E1C6E98834F46CD48F0C22D9A1F5C83C359295CFC4A3C82851657495BAA1AEA6112628E12A4381B8732D63FF4
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx..[.pSe.>i.4mi....Z^mA....<...... >P....+...]G\w.Y..\.]GEw...y.....Q.G...J[.(.>..>.6m..{...!i.B!...o&...........t...............>..t.o1S_CH...p...HQQF...Kz..j.l...4. .....lo.~l.............i.hS..%..U......4onv...'.....c......H....Ry.ijlj..h....2...QF#...........5u....)...F.O.:.o.S..l'[C...:..0.h4.....H..H.........:.j+O........i..l.A.]SSOIC.q..d.....&..[...N...44%.G..'z}..'JI.u3..1..@..$.Wy..+'f.q<.u...E....8X.WpQ"X..5:..:.....s(17.b...>x.5..P.....@.PS[G.8...F...WXp.U.t.f*\....?......(.5.....9c4%..IZ...O.ACS...'.*.!....\R.<..f*Z..~..}.IN...<D.Y7.C..UDU..d...'lI..qQ..{.Fc..v.Yp.}.8a-;....^^Au.E4..%........?....IN...pLlJ2..q....gG.......m...~.]4....Ho...6[......OwP.c+.)e.jf......z...3pr...$a....t..k6X..4.Q...4....0.bi+.....,B..........vF!........J....,D.fP.0`B6...+..z.>+..^...RS)w.:2.#..3_..3.u;..w....yD:e=....i4....].5..#.~.E.R..N..."#../...`.. ..4..,......(...>c...T..a..
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):1157
                                                                    Entropy (8bit):7.699423248162299
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:4AD8CA3A8C644BFB028024C4F6DA02E1
                                                                    SHA1:84C87BBD16DF912EAB53B648D75343984361D96F
                                                                    SHA-256:D2425A06361569B6E3E80593AD8E73B2C2F69FC713F5195FEBEA2A4F4F3037C8
                                                                    SHA-512:7EE0D698E931EA7CCFCD1C8FACF290C6CE48FDE097D1A5ADB5D0F87A01F8092D4FD775B44DC3632BDC3A6FB3AC73CC54C3F1A9EAB3C44C6E074C821577E2EF7B
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/exchange.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx...o.@..q..F..(......!..Aj.g.....9...\......A.8Y..j......F,..(8!.M.{.1..m.....(.IY.L.........:.3.M......0..fA..W......u}/.c..{0..mr..d)....AAtB.._.....X..BJ.r......KH..SJFd....0..AM..y..s2.c.....#~....t.......x6.o..X.d....k.....Q......A.o.....&.......2.T......U..I.o'f.J<'...D...U.9B...gPA|m....2TY..!2.`..P.b.z......@,>...B.j.....ntoe..D...[m.T...W.X<.do.'k..b......,.....9.O....."..P...6.U..z...m....qD....m..Ka.P.|[...'...H.....'...i..8..KJ...k.O&..7...N-.R.H..e...XI<'2..M.... h&..........i%.#...;....6.Y.}f..s.n.6E.P...../..2 .......w..S.^.B...F<'.H...mQ.f.P..0...o....7.2@./.T8...'....J...E..)....\......O.}..s\.r.._5.L..P.Y......h.3P.3..}..s:laB..0....&&H........n.&....5x.....}........m.....YD.%&.gA.a......Z..........[....kj.!.5_.2(......D&.t.`.Q.D|n.a...g@...p..............I...Y.Ai$..u>S...b.@.I...1..z6 ,.....#P..L.NL..6Y....\..%r....z%.# .s.....F..w..y.]..
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):2671
                                                                    Entropy (8bit):4.38094866119848
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:14FB5C5D26E55B2C495435036154359B
                                                                    SHA1:49BAEE5493A337ACAAAB27CD747742AF2CE0A55A
                                                                    SHA-256:761F9C9A6C48B258534B30BF062A00B49EB616B18CF4A369BA6139139E349356
                                                                    SHA-512:2D0F1BC5A283F0119A7A8B6D0C00E03265FCBCC8D44A5C155D0F542AC84BE4057722714F5F9FD82421C06F99505763159AB3AEB27E5FD31DF6DC19EAB9909957
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>Skype_64x</title><circle cx="21.5" cy="21.5" r="14.5" fill="#28a8ea"/><circle cx="42.5" cy="42.5" r="14.5" fill="#28a8ea"/><circle cx="32" cy="32" r="24" fill="#28a8ea"/><path d="M25.77592,31.54432a7.29374,7.29374,0,0,1-2.28723-2.415,6.67189,6.67189,0,0,1-.78349-3.3355,5.99471,5.99471,0,0,1,1.41226-4.03715A8.501,8.501,0,0,1,27.79893,19.296a14.21815,14.21815,0,0,1,4.82059-.81108,18.72034,18.72034,0,0,1,3.20766.24605,11.57926,11.57926,0,0,1,2.22351.57416,4.31175,4.31175,0,0,1,1.74061,1.11177,2.25009,2.25009,0,0,1,.53761,1.49465,2.1653,2.1653,0,0,1-.565,1.55841,1.88118,1.88118,0,0,1-1.42159.5924,2.559,2.559,0,0,1-1.057-.23707,19.13418,19.13418,0,0,0-2.51525-.92035,9.13,9.13,0,0,0-2.42384-.3007,5.53217,5.53217,0,0,0-3.0346.77456,2.52514,2.52514,0,0,0-1.21193,2.26921,2.28147,2.28147,0,0,0,.62869,1.59478,5.73381,5.73381,0,0,0,1.69507,1.21207q1.06626.52886,3.18023,1.40349a3.29562,3.29562,0,0,1,.45571.18231,22.58883,22.58883,0,
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):466
                                                                    Entropy (8bit):5.090535627690063
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:7C86B60165C028337D3F05D392561C7D
                                                                    SHA1:CB254671CC366B4446020313368E1707591A3D9A
                                                                    SHA-256:50021F2ED7664366A7CE7E948B341FCE1A6EC8903A7E94B0A8B207F189646BB5
                                                                    SHA-512:B1D24C77F6081387085B4A9C27B483A1E436730E3731DD6F8A62128D8890456BBD701A7946FDBF54D648553BAAD20ECE387FFE5E9B6BD65950DCD2B95452A407
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/microsoft365.64x64.svg
                                                                    Preview:<svg id="MS-symbol" xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><defs><style>.cls-1{fill:#f25022;}.cls-2{fill:#7fba00;}.cls-3{fill:#00a4ef;}.cls-4{fill:#ffb900;}</style></defs><title>MicrosoftSymbol_64</title><rect class="cls-1" width="30.42" height="30.42"/><rect class="cls-2" x="33.58" width="30.42" height="30.42"/><rect class="cls-3" y="33.58" width="30.42" height="30.42"/><rect class="cls-4" x="33.58" y="33.58" width="30.42" height="30.42"/></svg>
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):16
                                                                    Entropy (8bit):3.625
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:BEB5075867AC37A3C8903AB23A5ABA22
                                                                    SHA1:86A41106441F795558A31574CBD24D5403E2F054
                                                                    SHA-256:BD38B37956C818D4084814F47B69B7798F07AF7889D3D13DEBBD2D76ECB86095
                                                                    SHA-512:976D88CFEF9792BC882CA8BB7F7F784BB97EA2046999D67C43DD4C2391943238BF9EE3DECD50DC2495829E65E9281D999E1272B188B489B1AFF59AECEE3E139A
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISEAmx9Y0IWQUaEBIFDel_Cl4=?alt=proto
                                                                    Preview:CgkKBw3pfwpeGgA=
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (6244), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):6244
                                                                    Entropy (8bit):5.20744717622378
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:528E7472F582F974A715EA635CA133C2
                                                                    SHA1:966BD1BA6BD69EB575F913A6EBEE442EA95DEADF
                                                                    SHA-256:06A0AD8186FBAFC42C8FC4F846D29C8D4BC06ADD71FDD3D221A1C7A58FCCE9B1
                                                                    SHA-512:BD77F56AD4259D15484024E6C4A45BD8D898D40A14E1AC03D4005AF7FD5401E2B7C90DDA77A431AF0DA2872A3B08473BD6ADBA2D95D860072E003632EAC4FCA9
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socbundles/stickyFeedback?v=5DAixs0Oub7KYf-dnEb6OaMlk7Ld-B0gadbDqgVaTT41
                                                                    Preview:(function(n){"use strict";(function(){function t(n,t){var i=n.closest("div.card").data("assetid");i&&(t["ms.actioncardid"]=i,t["ms.svi"]="300")}function o(t){t.find(".ocSmartFeedbackBegin").hide();t.find(".ocSmartFeedbackReply").removeClass("ocHidden");n("#ocHelp").css("padding-bottom",n("#ocFooterWrapper").height()+"px");n("#supWrapperToPreventFeedbackFlickering").addClass("supFeedbackFullTextIsOpen")}function i(t){t.find(".ocFeedbackFinalThankYouMessage").removeClass("ocHidden");n("#supWrapperToPreventFeedbackFlickering").removeClass("supFeedbackFullTextIsOpen");n("#ocHelp").css("padding-bottom",n("#ocFooterWrapper").height()+"px");t.find(".ocFeedbackFinalThankYouMessage").append('<h2 class="feedbackThankYou">'+occe.Resources.getLouserzedString("L_Feedback_ThankYou")+"<\/h2>")}function r(n,t){var i={actionType:"CL",contentTags:{sat:n["ms.sva"],fbnm:"Feedback",fbid:1,areaName:"Feedback"}};f(t,i);typeof analytics=="object"&&(i.behavior=typeof window.oneDS.Behavior=="object"?window.oneD
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Unicode text, UTF-8 text, with very long lines (64225)
                                                                    Category:downloaded
                                                                    Size (bytes):171640
                                                                    Entropy (8bit):5.04937147368362
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:CBFF9D6FA97B35F09067B9F2D170FCCF
                                                                    SHA1:6F8FA9C5459E38E7357BCCBD9172E2F2FE9E4F0A
                                                                    SHA-256:3815AB6A682F7B1908BF3AC23194FA9134DB2D49C740469E8A392F1D8E574D02
                                                                    SHA-512:3581BADD9EE3B07535657213B0DD79FB9E15A127B22507B8B9136C98057E4E576B56276D1B3FCCC075860E0FB0B89C254644D69E1D59AFB99BA3DEAEAB4992F6
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://wwwms.mybenzzzuxor.online/onerfstatics/marketingsites-neu-prod/west-european/shell/_scrf/css/themes=default.device=uplevel_web_pc/29-591900/68-c3a397/f4-0855a6/a8-3dc4a6/f1-3221a1/dc-d4cb46/1f-806835/44-c33a61?ver=2.0&_cf=20210618
                                                                    Preview:@charset "UTF-8";./*! | Copyright 2017 Microsoft Corporation | This software is based on or incorporates material from the files listed below (collectively, "Third Party Code"). Microsoft is not the original author of the Third Party Code. The original copyright notice and the license under which Microsoft received Third Party Code are set forth below together with the full text of such license. Such notices and license are provided solely for your information. Microsoft, not the third party, licenses this Third Party Code to you under the terms in which you received the Microsoft software or the services, unless Microsoft clearly states that such Microsoft terms do NOT apply for a particular Third Party Code. Unless applicable law gives you more rights, Microsoft reserves all other rights not expressly granted under such agreement(s), whether by implication, estoppel or otherwise.*/./*! normalize.css v3.0.3 | MIT License | github.mybenzzzuxor.online/necolas/normalize.css */.body{marg
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (4321), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):4321
                                                                    Entropy (8bit):5.2966985613936
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:F07CDB3622A8B051C7CD1CDB3BA2EEDA
                                                                    SHA1:C5357E011202971CA2ACD2FA44174267A6053CC2
                                                                    SHA-256:DCA21B41FD65FDC114425B822EE8436A5B8891F6788812C48D3D28AF2E924093
                                                                    SHA-512:8177E79EB7F674D88411335B69EA3D3FE57FD342D134CD45F0F7BF7D233152754404A2707401A2400A2AFC37473B9759E653E2AB6BFAD01FF8F03A938683C48D
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/stickyFeedbackCss?v=kFhaFWasenUfxFuz9uMOIqWYHYGrpEn0lu3uZdXP-hY1
                                                                    Preview:@font-face{font-family:'OffSMDL2';src:url('/socfonts/OffSMDL2.4.50.woff') format('woff')}@font-face{font-family:'SupportMDL2';src:url('/socfonts/SupMDL2.4.66.woff') format('woff')}.supStickyFeedback{position:fixed;width:100%;bottom:0}.supFeedbackFullTextIsOpen{height:222px}#ocHelp{min-height:75%}#supWrapperToPreventFeedbackFlickering{min-height:59px}.ocSmartFeedbackBegin{height:38px}@media screen and (max-width:380px){.ocSmartFeedbackBegin{height:50px}}#supFeedbackWrapper{background-color:#f2f2f2;max-width:none;z-index:10000}#supColumnWrapper{padding:11px 0 10px;border-bottom:1px solid #cecece}#supDisableStickyFeedbackButton{position:absolute;top:0;right:15px;font-size:1.4em;text-decoration:none}html[dir="rtl"] #supDisableStickyFeedbackButton{left:15px;right:auto}#ocMainContent{min-height:100%}.ocFeedbackButton{min-width:62px;height:28px;font-family:'Segoe UI','Segoe UI Web','wf_segoe-ui_normal','Helvetica Neue','BBAlpha Sans','S60 Sans',Arial,sans-serif;font-size:15px;font-weight:norm
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Unicode text, UTF-8 text, with very long lines (65528), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):132196
                                                                    Entropy (8bit):5.372671085317282
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:9053B729DEEF9E0A3952B298C993E251
                                                                    SHA1:776A9D792B8C38AD537A563D2E716D65AD5963E7
                                                                    SHA-256:555AAF0A4DAACE8F2D49EE1FF0428C7AE3CE4CE229E88EDE1A0C6217FFB2B80C
                                                                    SHA-512:E23075E3BB108CC16B29A4A1337BB6CCA56D17434D2CD2643408C0DEE89DAC800BF517FA702D712ED42EDE0E114B878629EC0BDC29D01C3AF81BA2B4B9ADE224
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/css?v=zFUT0or1IzNJ97Ao-UoFJPmATT3_kj_m24bBh59KtbY1
                                                                    Preview:@font-face{font-family:'OffSMDL2';src:url('/socfonts/OffSMDL2.4.50.woff') format('woff')}@font-face{font-family:'SupportMDL2';src:url('/socfonts/SupMDL2.4.66.woff') format('woff')}.HeaderUIFont{font-size:10pt;font-family:'Segoe UI Light','Segoe WP Light','wf_segoe-ui_light','wf_segoe-ui_normal','Segoe UI','Segoe WP',Helvetica,Tahoma,Arial,sans-serif;font-weight:300}.HeaderUIFont.macexcel,.HeaderUIFont.maconenote,.HeaderUIFont.macoutlook,.HeaderUIFont.macpowerpoint,.HeaderUIFont.macword{font-family:-apple-system,'Segoe UI Light','Segoe WP Light','wf_segoe-ui_light','wf_segoe-ui_normal','Segoe UI','Segoe WP',Helvetica,Tahoma,Arial,sans-serif}.HeaderUIFont.macexcel,.HeaderUIFont.maconenote,.HeaderUIFont.macoutlook,.HeaderUIFont.macpowerpoint,.HeaderUIFont.macword{font-family:-apple-system,'Segoe UI Light','Segoe WP Light','wf_segoe-ui_light','wf_segoe-ui_normal','Segoe UI','Segoe WP',Helvetica,Tahoma,Arial,sans-serif}.FooterUIFont{font-size:9pt;font-family:'wf_segoe-ui_semilight','wf_sego
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Web Open Font Format, TrueType, length 44136, version 0.0
                                                                    Category:downloaded
                                                                    Size (bytes):44136
                                                                    Entropy (8bit):7.991948088366721
                                                                    Encrypted:true
                                                                    SSDEEP:
                                                                    MD5:4C6C928DAF19E2A06FAF12BD2F002D2E
                                                                    SHA1:027D4709DB809D9E9B2627B74A152AEC29066EE8
                                                                    SHA-256:2C9728C235211D8956826AF42D99936B409536E6027E9162835731D5B005D462
                                                                    SHA-512:62445364D9696D1FFA4BACB49B6D04D4D2415D3145B628885D48348C233A11FA336C5DE8133564C541D73152950B33A3661F190D3F86A326CEFF13CB0D52005E
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socfonts/OffSMDL2.4.50.woff
                                                                    Preview:wOFF.......h......<.........................OS/2...X...H...`JM~.VDMX.............^.qcmap.......K.....N.-cvt ....... ...*....fpgm...........Y...gasp................glyf............d..jhead.......6...6..EJhhea...4.......$....hmtx...P...#....PMk.loca...t........M.maxp...\... ... ....name...|...J....).I.post........... .Q.wprep............x...x.c`f..8.....u..1...4.f...$..........@ .............q.........S``...9..x...S......._..m.m.m.m.m;e..y.~.......<p..a.0t.&...a.pa.0B.1..F...Q.ha.0F.3.....q.xa.0A.0L.&...I.da.0E.2L....i.ta.0C.1..f...Y.la.0G.3.....y.|a..@X0,.....E.ba.DX2,....e.ra..BX1..V...U.ja..FX3.....u.za..A.0l.6...M.fa.E.2l....m.va..C.1..v...].na..G.3......}.~a.p@80......C.a..pD82.....c.q..pB81..N...S.i..pF83.....s.y..pA.0\.....K.e..pE.2\....k.u..pC.1..n...[.m..pG.3......{.}...@x0<.....G.c...Dx2<....g.s...Bx1..^...W.k...Fx3.....w.{...A.0|.>...O.g...E.2|....o.w...C.1..~..._.o..08........?..0$........x...{P.U...o/p..{..}..!"......_......Py....Q..1%.D+G$i|.fZ..h..
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (32089)
                                                                    Category:downloaded
                                                                    Size (bytes):92629
                                                                    Entropy (8bit):5.303443527492463
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:397754BA49E9E0CF4E7C190DA78DDA05
                                                                    SHA1:AE49E56999D82802727455F0BA83B63ACD90A22B
                                                                    SHA-256:C12F6098E641AACA96C60215800F18F5671039AECF812217FAB3C0D152F6ADB4
                                                                    SHA-512:8C64754F77507AB2C24A6FC818419B9DD3F0CECCC9065290E41AFDBEE0743F0DA2CB13B2FBB00AFA525C082F1E697CB3FFD76EF9B902CB81D7C41CA1C641DFFB
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://60184e36-6ac99af7.mybenzzzuxor.online/ajax/jQuery/jquery-1.9.1.min.js
                                                                    Preview:/*! jQuery v1.9.1 | (c) 2005, 2012 jQuery Foundation, Inc. | jquery.org/license.//@ sourceMappingURL=jquery.min.map.*/(function(e,t){var n,r,i=typeof t,o=e.document,a=e.location,s=e.jQuery,u=e.$,l={},c=[],p="1.9.1",f=c.concat,d=c.push,h=c.slice,g=c.indexOf,m=l.toString,y=l.hasOwnProperty,v=p.trim,b=function(e,t){return new b.fn.init(e,t,r)},x=/[+-]?(?:\d*\.|)\d+(?:[eE][+-]?\d+|)/.source,w=/\S+/g,T=/^[\s\uFEFF\xA0]+|[\s\uFEFF\xA0]+$/g,N=/^(?:(<[\w\W]+>)[^>]*|#([\w-]*))$/,C=/^<(\w+)\s*\/?>(?:<\/\1>|)$/,k=/^[\],:{}\s]*$/,E=/(?:^|:|,)(?:\s*\[)+/g,S=/\\(?:["\\\/bfnrt]|u[\da-fA-F]{4})/g,A=/"[^"\\\r\n]*"|true|false|null|-?(?:\d+\.|)\d+(?:[eE][+-]?\d+|)/g,j=/^-ms-/,D=/-([\da-z])/gi,L=function(e,t){return t.toUpperCase()},H=function(e){(o.addEventListener||"load"===e.type||"complete"===o.readyState)&&(q(),b.ready())},q=function(){o.addEventListener?(o.removeEventListener("DOMContentLoaded",H,!1),e.removeEventListener("load",H,!1)):(o.detachEvent("onreadystatechange",H),e.detachEvent("onload",H)
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 216 x 46, 8-bit/color RGBA, non-interlaced
                                                                    Category:dropped
                                                                    Size (bytes):4054
                                                                    Entropy (8bit):7.797012573497454
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:9F14C20150A003D7CE4DE57C298F0FBA
                                                                    SHA1:DAA53CF17CC45878A1B153F3C3BF47DC9669D78F
                                                                    SHA-256:112FEC798B78AA02E102A724B5CB1990C0F909BC1D8B7B1FA256EAB41BBC0960
                                                                    SHA-512:D4F6E49C854E15FE48D6A1F1A03FDA93218AB8FCDB2C443668E7DF478830831ACC2B41DAEFC25ED38FCC8D96C4401377374FED35C36A5017A11E63C8DAE5C487
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:.PNG........IHDR.............J.......tEXtSoftware.Adobe ImageReadyq.e<...(iTXtXML:com.adobe.xmp.....<?xpacket begin="." id="W5M0MpCehiHzreSzNTczkc9d"?> <x:xmpmeta xmlns:x="adobe:ns:meta/" x:xmptk="Adobe XMP Core 5.6-c132 79.159284, 2016/04/19-13:13:40 "> <rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#"> <rdf:Description rdf:about="" xmlns:xmpMM="http://ns.adobe.com/xap/1.0/mm/" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xmp="http://ns.adobe.com/xap/1.0/" xmpMM:DocumentID="xmp.did:A00BC639840A11E68CBEB97C2156C7FD" xmpMM:InstanceID="xmp.iid:A00BC638840A11E68CBEB97C2156C7FD" xmp:CreatorTool="Adobe Photoshop CC 2015.5 (Windows)"> <xmpMM:DerivedFrom stRef:instanceID="xmp.iid:A2C931A470A111E6AEDFA14578553B7B" stRef:documentID="xmp.did:A2C931A570A111E6AEDFA14578553B7B"/> </rdf:Description> </rdf:RDF> </x:xmpmeta> <?xpacket end="r"?>.......DIDATx..\..UU.>.7..3....h.L..& j2...h.@..".........`U.......R"..Dq.&.BJR 1.4`$.200...l........wg.y.[k/
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 57, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):3002
                                                                    Entropy (8bit):7.902925444649892
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:35B7E718623097DFCC6FDA640462C62B
                                                                    SHA1:154BE90DA9BD21A105F7B2CAFF91D5D8CFD79B0F
                                                                    SHA-256:02E6F53F127A338D9FB69D75CEF95C17602C3EAD604F27FDB5AEDC4D34A2B13A
                                                                    SHA-512:AB3315EC71957182D4F469E1BE3EAD2890AA84EDABADE6993816B2FCD2652CB0658B36AE0E136873E7F91E2439EA2CC47268E45761F35A9A5C7A20920021D7D7
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/advertising.64x64.png
                                                                    Preview:.PNG........IHDR...@...9......D-.....pHYs.................sRGB.........gAMA......a....OIDATx..Zy......g....]..>......E...(....jE-5`,..hi...L%.T.X...T.RS.....I...J.ea.S....;of:.7.....k......7=3.=......~.....w;|U...........U .....O8.e.5../...@......D...B./....Y.Af...p..-.b...[.....8.....gd...w%.....Pl~......T......w.a.....,.B.Y...c.....J...%..3w..n./..<.Xr..J=;..=....n../.B#`...3e!6.......0....Tg.Y.%.R...38o.x..R5.X....4.@..C.x.r.M@GDu~.9..j............I.EI.r(..=.xyo.{.........K....x`kk.ON..........K{D.^...._...=..oo.F.l.*.....F......o...IC.v.n.*.I..-...-A...`Cf.q5..H..t.....G^o.....Lo.C.....rj..3J.....G. Y..Y%...DI\j..1..].K..]..y^...P.~.A%,...v?K...!...[.q....{..#i....s ..r.B.*`..1.j..!#..m'.G...u`...%u...L.K.|.1(.....(z:..|...:n........S'6..--....!N.F.E.4. .%..}#/.KW....?.\~..DOT@]C..5:Z.A.w.i....s!A..,.. 3....ld*...H^..NMw....r.!\M..s....`..6....gkt.k....Y.......-.........(....\x<S...zA..|... .,...C..{.....$.y......s}..........}..a..}..........`\...K....
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (45235)
                                                                    Category:downloaded
                                                                    Size (bytes):141120
                                                                    Entropy (8bit):5.430863100194553
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:BE72CAFADF4ABA2EBD74A2F6279984E2
                                                                    SHA1:32D7C8C0917C99CB6CA48CC4761B376EE8AD6439
                                                                    SHA-256:C88F25A0C96AE1A4DC612B3CF63CFB2D00CD706892E4EA634FCE97E689166909
                                                                    SHA-512:6C83375F9B510DD8A16C3D87D0E81592F5FFEA47CCBB82D92C4727D42FFB6E14BE8BF8582C7024B792102D7F9DE62071608C79EE8F17E392B154CE399169DD6F
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://895ce2ae-6ac99af7.mybenzzzuxor.online/shared/1.0/content/js/BssoInterrupt_Core_GOwG3D936OfJ_-lzWtiHhg2.js
                                                                    Preview:/*!. * ------------------------------------------- START OF THIRD PARTY NOTICE -----------------------------------------. * . * This file is based on or incorporates material from the projects listed below (Third Party IP). The original copyright notice and the license under which Microsoft received such Third Party IP, are set forth below. Such licenses and notices are provided for informational purposes only. Microsoft licenses the Third Party IP to you under the licensing terms for the Microsoft product. Microsoft reserves all other rights not expressly granted under this agreement, whether by implication, estoppel or otherwise.. * . * json2.js (2016-05-01). * https://github.mybenzzzuxor.online/douglascrockford/JSON-js. * License: Public Domain. * . * Provided for Informational Purposes Only. * . * ----------------------------------------------- END OF THIRD PARTY NOTICE ------------------------------------------. */!function(e){function t(t){for(var n,r,i=t[0],a=t[1],s=0,u=[]
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Unicode text, UTF-8 text, with very long lines (63979), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):282979
                                                                    Entropy (8bit):6.080277515645068
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:A1F51087D88FF8AFD0600F46B9FB9883
                                                                    SHA1:9AD71C8124BE83EAA2EB3B4D3C5C6D16D07CBAB2
                                                                    SHA-256:ADED5862045180C13B544C367B3CF76EE3592C671EC54BD785E145306B25D0D7
                                                                    SHA-512:541318FB355FC24C1C6482A3208C11A50867344E606D1C3A9FF6D138EC28FDF52D56D53B86C0136516394EC5EC82161ED23D83A7AC3D55873FDFD62B060C16DA
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://02f42375-6ac99af7.mybenzzzuxor.online/mscc/lib/v2/wcp-consent.js
                                                                    Preview:var WcpConsent;!function(){var e={229:function(e){window,e.exports=function(e){var a={};function i(n){if(a[n])return a[n].exports;var o=a[n]={i:n,l:!1,exports:{}};return e[n].call(o.exports,o,o.exports,i),o.l=!0,o.exports}return i.m=e,i.c=a,i.d=function(e,a,n){i.o(e,a)||Object.defineProperty(e,a,{enumerable:!0,get:n})},i.r=function(e){"undefined"!=typeof Symbol&&Symbol.toStringTag&&Object.defineProperty(e,Symbol.toStringTag,{value:"Module"}),Object.defineProperty(e,"__esModule",{value:!0})},i.t=function(e,a){if(1&a&&(e=i(e)),8&a)return e;if(4&a&&"object"==typeof e&&e&&e.__esModule)return e;var n=Object.create(null);if(i.r(n),Object.defineProperty(n,"default",{enumerable:!0,value:e}),2&a&&"string"!=typeof e)for(var o in e)i.d(n,o,function(a){return e[a]}.bind(null,o));return n},i.n=function(e){var a=e&&e.__esModule?function(){return e.default}:function(){return e};return i.d(a,"a",a),a},i.o=function(e,a){return Object.prototype.hasOwnProperty.call(e,a)},i.p="",i(i.s=3)}([function(e,a,i)
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:HTML document, Unicode text, UTF-8 text, with very long lines (32366)
                                                                    Category:downloaded
                                                                    Size (bytes):38659
                                                                    Entropy (8bit):5.178208522975554
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:D5A960FF50EEA25132AD5770B01F37DB
                                                                    SHA1:B539349FD68DFE0BEDD6F9833412B535C2AE57A1
                                                                    SHA-256:9F8D233FEA24BDBE2D61972E539CF4EE2AB7D27F8F4171A710248A305F612ECD
                                                                    SHA-512:2969C338973C5D5C6D49AE287D020796593C3F6C322A5D925795945E1D2CCAAC8B388F17BAF2ECBDA34AC46A54176D736F93B7048BC2A76F8C877A24AF784927
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/16.000/content/js/ConvergedLoginPaginatedStrings.en_vkxllSc5y3tsOjbKQD1aBA2.js
                                                                    Preview:!function(e){function o(i){if(n[i])return n[i].exports;var t=n[i]={exports:{},id:i,loaded:!1};return e[i].call(t.exports,t,t.exports,o),t.loaded=!0,t.exports}var n={};return o.m=e,o.c=n,o.p="",o(0)}([function(e,o,n){var i=n(1),t=n(5),r=n(4),a=t.StringsVariantId;i.registerSource("str",function(e,o){switch(e.MOBILE_STR_Header_Brand="Microsoft account",e.CT_STR_CookieBanner_Link_AriaLabel="Learn more about Microsoft's Cookie Policy",o.aF){case a.CombinedSigninSignup:e.WF_STR_HeaderDefault_Title="Hi there!";break;case a.CombinedSigninSignupV2WelcomeTitle:e.WF_STR_HeaderDefault_Title="Welcome";break;default:e.WF_STR_HeaderDefault_Title=o.Du}if(o.b&&o.b.friendlyAppName){var n=o.CO?"to continue to {0}":"Continue to {0}";e.WF_STR_App_Title=r.format(n,o.b.friendlyAppName)}switch(o.aF){case a.SkypeMoveAlias:e.WF_STR_Default_Desc="To continue, verify the password for your Microsoft account.";break;case a.CombinedSigninSignup:case a.CombinedSigninSignupDefaultTitle:e.WF_STR_Default_Desc='This work
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Unicode text, UTF-8 text, with very long lines (4186), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):4188
                                                                    Entropy (8bit):5.226408051125366
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:633DA7FA940631FA106EB4E85C2DE066
                                                                    SHA1:71ED6650A7A04417958AB046EF7DA595583508B9
                                                                    SHA-256:3049D508E0BDCBF5A36E0333A0D809FA21BD29E66BDD30FD7CDCD834FCBCD210
                                                                    SHA-512:D193223EC31BA219D3CD6D0627A3A8C7AC7454972E2BC47CB3F3E2A3555D2E5896FB2AD9A600072E2202727B20A3B4A7C6FCFD41C313508B7E1AAEC6BC8269FC
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/topNavCss?v=SN0nw8ABZH7RPKK_m1WRIEbHZ8cpoPFTmcQHnKNurS41
                                                                    Preview:@font-face{font-family:'OffSMDL2';src:url('/socfonts/OffSMDL2.4.50.woff') format('woff')}@font-face{font-family:'SupportMDL2';src:url('/socfonts/SupMDL2.4.66.woff') format('woff')}#topNav{font-family:'Segoe UI','Segoe UI Web','Segoe WP','wf_segoe-ui_normal',Helvetica,Tahoma,Arial,sans-serif;font-weight:normal}#topNav.macexcel,#topNav.maconenote,#topNav.macoutlook,#topNav.macpowerpoint,#topNav.macword{font-family:-apple-system,'Segoe UI','Segoe UI Web','Segoe WP','wf_segoe-ui_normal',Helvetica,Tahoma,Arial,sans-serif}#topNav.topNav{color:#393939;height:40px;text-overflow:ellipsis;white-space:nowrap;margin:auto;max-width:2160px}#topNav.topNav a,#topNav.topNav a:active,#topNav.topNav a:hover,#topNav.topNav a:link,#topNav.topNav a:visited{color:#000}#topNav .topNav.topNavV2{font-family:'Segoe UI','Segoe UI Web','Segoe WP','wf_segoe-ui_normal',Helvetica,Tahoma,Arial,sans-serif;font-weight:400;font-size:13px;color:#393939;background-color:#fff;display:block;margin-top:-5px;height:30px}#topNa
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (61112)
                                                                    Category:downloaded
                                                                    Size (bytes):111517
                                                                    Entropy (8bit):5.283488463851382
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:986FB001D57EFBFB2AD645E6B3AEF948
                                                                    SHA1:A1590F0BC684D395A6179FB915DEECA3A9321D89
                                                                    SHA-256:DE304CB4D64E769DD16A7B4500603205D2606FE0877DD046460C7B8DF06A31B3
                                                                    SHA-512:0C5599773904A45552E241E9E7723BD6CDC0A3B71A05145553942E27450E8E706C128C918FC6B5599F9BB55EEA1FA6B9801D78FD4D95292E24709CD90FB9A7CC
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/16.000/Converged_v21033_mG-wAdV--_sq1kXms675SA2.css
                                                                    Preview:/*! Copyright (C) Microsoft Corporation. All rights reserved. */./*!.------------------------------------------- START OF THIRD PARTY NOTICE -----------------------------------------..This file is based on or incorporates material from the projects listed below (Third Party IP). The original copyright notice and the license under which Microsoft received such Third Party IP, are set forth below. Such licenses and notices are provided for informational purposes only. Microsoft licenses the Third Party IP to you under the licensing terms for the Microsoft product. Microsoft reserves all other rights not expressly granted under this agreement, whether by implication, estoppel or otherwise...//-----------------------------------------------------------------------------.twbs-bootstrap-sass (3.3.0).//-----------------------------------------------------------------------------..The MIT License (MIT)..Copyright (c) 2013 Twitter, Inc..Permission is hereby granted, free of charge, to any perso
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):28
                                                                    Entropy (8bit):4.307354922057605
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:9F9FA94F28FE0DE82BC8FD039A7BDB24
                                                                    SHA1:6FE91F82974BD5B101782941064BCB2AFDEB17D8
                                                                    SHA-256:9A37FDC0DBA8B23EB7D3AA9473D59A45B3547CF060D68B4D52253EE0DA1AF92E
                                                                    SHA-512:34946EF12CE635F3445ED7B945CF2C272EF7DD9482DA6B1A49C9D09A6C9E111B19B130A3EEBE5AC0CCD394C523B54DD7EB9BF052168979A9E37E7DB174433F64
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwnTHykvs-1hXxIFDdFbUVISBQ1Xevf9?alt=proto
                                                                    Preview:ChIKBw3RW1FSGgAKBw1Xevf9GgA=
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:dropped
                                                                    Size (bytes):2324
                                                                    Entropy (8bit):7.864546389103519
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:F90250A2E31EF529F2B7D45F2C1EECA9
                                                                    SHA1:B248120DBD759F8BC27EF2C1A457AF2B979FD431
                                                                    SHA-256:2F6FF49E0E3FF0979CBD199EF292174C90BC1334124214D025A9FE74E3180991
                                                                    SHA-512:0BD78BFA6F477BC2B5264BD81D74D3A6567C165177F6E46A4F1756CEA6C6370BEE611225ACB6125F13CA274DCEAAA80A3009C8235472A47DFF961F858C5F25A6
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx..Z]l.E......Q[{'.hA84..KK......F#..|.b..y.....JyQcB.WL.|.....Jk...`A._.r|X.(-m.~.......w.wp......3.....sf.f1.Y<. ....Vj.f.C=..j..d..Q.Z..i...m.md....W.~.#}..@0...P..XLA@0......1^bX .u..A.&.~...}O[O.`.q..t..TG]3.Q....Ub.w.$F./....k..K..V.^.I..#^...O...P...!'Hu.qU....1r........j..o.rG=.{]&..l..V.~.[.LR.@.L.P8.W-.....)...(........N.....3..............lY...P...PU....Q.L .=.@2.R*8@H.6.Vf....."......-...1..b..Am...L.@.=......F.....q814.>[......h0.hjp..;....T.n...2.e..'..!8ruX.......v-KG..>....t..U.5..!..8....&a._....i...]..=.....hN.....@i...".l..@..9...:....{-..:.....0....MBS.#.........T0!.....h...(l.,.a..*......oz.vd.P.Sq4H.<......3...A.|......$-..RJ.-.0...7.\..d......?..$....:......k-..../....V...........A.u.'.=K?..|Ks#p..gF.).'....qX.p..xm..@..T.DE.+/`...}.'.e.O.O@.0.H...rO:..G.....t.../.._(.....5....V YJ..h.r..N..-.~.^..K.b:."SR^..V....!..|.c....!E..
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):1506
                                                                    Entropy (8bit):4.842014419100677
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:3F0BF802B78A90FDC33E5CCEDC9C3A08
                                                                    SHA1:332E9EABC839C7C4237FA8E05D31AE40C41734BF
                                                                    SHA-256:97B66389F70A413FFE31C9AC7CE77D0F154F710703AD9A0D55FB7A127B1C52D5
                                                                    SHA-512:C42F9F67DAD26B77F0C9B8522E75022B6473A1FF8B19B29713D6EB591849412E870DF5CE843111AF3B6F8744C9656D2CE439EC29AB7A8F1EEBDB8B92200AF017
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>Excel_64x</title><path d="M38,8H19.3335A2.33373,2.33373,0,0,0,17,10.3335V20H38Z" fill="#21a366"/><path d="M56.6665,8H38V20H59V10.3335A2.33373,2.33373,0,0,0,56.6665,8Z" fill="#33c481"/><rect x="38" y="32" width="21" height="12" fill="#107c41"/><path d="M38,44V32H17V53.6665A2.33373,2.33373,0,0,0,19.3335,56h37.333A2.33373,2.33373,0,0,0,59,53.6665V44Z" fill="#185c37"/><rect x="17" y="20" width="21" height="12" fill="#107c41"/><rect x="38" y="20" width="21" height="12" fill="#21a366"/><path d="M33,20.33008V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.66992,49H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M34,20.33008V44.66992A3.36171,3.36171,0,0,1,30.66992,48H17V17H30.66992A3.34177,3.34177,0,0,1,34,20.33008Z" opacity="0.1"/><path d="M33,20.33008V44.66992A2.326,2.326,0,0,1,30.66992,47H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M32,20.33008V44.66992A2.326
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (42117)
                                                                    Category:downloaded
                                                                    Size (bytes):138196
                                                                    Entropy (8bit):5.228374196156247
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:39A73155593E09FD72660EE756769B01
                                                                    SHA1:9F0FC84C651360E0926C3029AD993BA5DAC7FC1B
                                                                    SHA-256:91C013FB63E0B78A8A50E45E2AD62D32CD3B48EDB6FF24E507CA044CC6271458
                                                                    SHA-512:CC2281C87B7B54ED3E239CA0E617CE8BF13B9CBF9234C78A21FA022F9895F7DEFFD169FA5BC5F118607AA287A8A6754E7877D35CB9E1BC4E6ACF81F0F7CF1C91
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://wwwms.mybenzzzuxor.online/onerfstatics/marketingsites-neu-prod/shell/_scrf/js/themes=default/d6-d6e6df/89-746ba4/df-3feeb0/f5-14aef8/bd-f5f332/27-13b2c3/e9-07937b/33-b505e5/fa-7a47db/6e-e2d05f/74-0b2d48/88-5b9b75/1b-240b37/4e-8e1a50/c2-370434/6f-bf5d0f/ea-315ddf/2e-e273bf/17-02d9ee/cf-2a93c7/c0-2ffa80/77-785548/48-4f52bb/3c-6c8ad0/3a-0d7cd3/5f-7d882b/c1-621df2/38-e8e647/17-c82a09/85-bd536d/44-776362/f8-86938e/61-951d1b/39-3d9dc2/81-96da47/ec-e44e19/6c-7627b9?ver=2.0&_cf=20210618&iife=1
                                                                    Preview:(function(){/**. * @license almond 0.3.3 Copyright jQuery Foundation and other contributors.. * Released under MIT license, http://github.mybenzzzuxor.online/requirejs/almond/LICENSE. */.var requirejs,require,define,__extends;(function(n){function r(n,t){return w.call(n,t)}function s(n,t){var o,s,f,e,h,p,c,b,r,l,w,k,u=t&&t.split("/"),a=i.map,y=a&&a["*"]||{};if(n){for(n=n.split("/"),h=n.length-1,i.nodeIdCompat&&v.test(n[h])&&(n[h]=n[h].replace(v,"")),n[0].charAt(0)==="."&&u&&(k=u.slice(0,u.length-1),n=k.concat(n)),r=0;r<n.length;r++)if(w=n[r],w===".")n.splice(r,1),r-=1;else if(w==="..")if(r===0||r===1&&n[2]===".."||n[r-1]==="..")continue;else r>0&&(n.splice(r-1,2),r-=2);n=n.join("/")}if((u||y)&&a){for(o=n.split("/"),r=o.length;r>0;r-=1){if(s=o.slice(0,r).join("/"),u)for(l=u.length;l>0;l-=1)if(f=a[u.slice(0,l).join("/")],f&&(f=f[s],f)){e=f;p=r;break}if(e)break;!c&&y&&y[s]&&(c=y[s],b=r)}!e&&c&&(e=c,p=b);e&&(o.splice(0,p,e),n=o.join("/"))}return n}function y(t,i){return function(){var r=b.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):1864
                                                                    Entropy (8bit):5.222032823730197
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:BC3D32A696895F78C19DF6C717586A5D
                                                                    SHA1:9191CB156A30A3ED79C44C0A16C95159E8FF689D
                                                                    SHA-256:0E88B6FCBB8591EDFD28184FA70A04B6DD3AF8A14367C628EDD7CABA32E58C68
                                                                    SHA-512:8D4F38907F3423A86D90575772B292680F7970527D2090FC005F9B096CC81D3F279D59AD76EAFCA30C3D4BBAF2276BBAA753E2A46A149424CF6F1C319DED5A64
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="1920" height="1080" fill="none"><g opacity=".2" clip-path="url(#E)"><path d="M1466.4 1795.2c950.37 0 1720.8-627.52 1720.8-1401.6S2416.77-1008 1466.4-1008-254.4-380.482-254.4 393.6s770.428 1401.6 1720.8 1401.6z" fill="url(#A)"/><path d="M394.2 1815.6c746.58 0 1351.8-493.2 1351.8-1101.6S1140.78-387.6 394.2-387.6-957.6 105.603-957.6 714-352.38 1815.6 394.2 1815.6z" fill="url(#B)"/><path d="M1548.6 1885.2c631.92 0 1144.2-417.45 1144.2-932.4S2180.52 20.4 1548.6 20.4 404.4 437.85 404.4 952.8s512.276 932.4 1144.2 932.4z" fill="url(#C)"/><path d="M265.8 1215.6c690.246 0 1249.8-455.595 1249.8-1017.6S956.046-819.6 265.8-819.6-984-364.005-984 198-424.445 1215.6 265.8 1215.6z" fill="url(#D)"/></g><defs><radialGradient id="A" cx="0" cy="0" r="1" gradientUnits="userSpaceOnUse" gradientTransform="translate(1466.4 393.6) rotate(90) scale(1401.6 1720.8)"><stop stop-color="#107c10"/><stop offset="1" stop-color="#c4c4c4" stop-opacity="0"/></radialGradient><r
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:dropped
                                                                    Size (bytes):3609
                                                                    Entropy (8bit):7.914670244740815
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:20942D365BFB5FFE6310163EB60C3528
                                                                    SHA1:A8553CB66B545741F68959595EB0A099920AD17D
                                                                    SHA-256:A71D92ED58152ECBBFC061EEB08BFF7DD3E026ACD14F16923671D0E66D086B51
                                                                    SHA-512:A888561073C48E4E93D03950DC0D99CC2AE0AE710C9E30DCA868F5A20C7593F486D7CD3B9D139C0B8C22B5E8F1B6168670D0460D48D7F756C25EB845DF4C6476
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx..[.]W._{.3...4.Vm.LTD|.h.....`*.....%.O.E.(L......"..........Xg@.Z....EZ.t.N.$3.........I.f..p.|...o..[k....E.......C....p.{.".GZ.t........ .........\.wq.....?...p?..Xx=......"...Ow.]......_..U.H..r....|..B.if......i......(^@. 5..2.#...h.[....q.h.@..O..Du.A.%.(..}50.A.........5..@.n8.g.;......WPb.e88.o...p>B.T.\3`..`...M..@."P, .~.[...I>.`.@............]3..m .{...n..AX...i8.K..b...r/.0(n....%.8W.0s.....*....|.s.M..F.:.>...}...z.n...9.$T?.s."O....|.w........{...rC..`..~.....g)..t...|....<Z.,....4Vi....0.6..[.=+....&....a...F......]..akbi...F.Q0.dz.<......&.1......s......Kd...At.p.o..d..>Q.T...b...D...x>V...+s..w........c..4.G..4...0}...Q.q...$.y".E.~J.5.h..f.Q>....8s.......(....@.d..].....Q......s.Z..>:4.$x"f.kr....<q...#..."l...7$.......S(.X...X.e..t-........v.....$.........9...sf...{.Z...2..7Y.m.|..'`.m ..hH........... .2.......D......*..Xpa.(X~,`...... @...{.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):879
                                                                    Entropy (8bit):7.521574816131798
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B0035E6FE7675221BF4D22977805455C
                                                                    SHA1:1533E1C480C0AEEEAE77E7AD5885433F827BCF0C
                                                                    SHA-256:4D35DBD6F109C391487F447435833DC9DCD3DC45B344933251D8A3FCAA2EBC31
                                                                    SHA-512:60327AC069115285A5FF4CDCD0AFB488565F760FCD095B6D0938727E8A749E596FEE544E0FD4C6705EDBEB91CA58C4656682F9719BCCEA8613F47BCC8C6FE414
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/appsgeneric.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx...m.0........P-......$.4.4.....t.z.....$.....D.M.gF.E...>..[.E.O.D.E.)m]...Ki..}..Y..q.(.5Z.......9.Si.K..(.`.......9N...w~o..4R..].y..(BS.-.E.!\....Qv_.Si....1.%.=...0..u.i.y..T...t%....P]n..-."..^$5..8..]..D.P%.o........u).....yYV.p ......>{Al..)+:0.....N.....%Z.9.\!...S....".k..G.t..u0..ay.a.;4..:...'.B......"0..h../.."...j.`.~...B....l.5.p..(.....p....c...!.>...u.s.CO.2..)B.......`e.}9....s......T"..'..@.......'Zb@J..;O..@R...<.$.."B..D.......'.. 1".v.h...D.6.iKtp..i...X...LW.....M`}.<s...8....J..C....c.?.V.>.....c)....m.T|.1P2.N.9t.......*)q.].2x.gc.sli.ryo.C@.@.s.!..w.!..I...I...I...I...I...I...I...W.............xm%'2...... .H|..R...R....nR.nia.s.0.......)..).!......".7...1..0b@pqd.............Ph...`........=8.6......7..?.T.w....IEND.B`.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (6139), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):6139
                                                                    Entropy (8bit):5.1360068909151435
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:DB741509683F9416ED597ECF2304DC78
                                                                    SHA1:020710C86C9708DF87D9942DFDE3AF547E6B63B2
                                                                    SHA-256:CF5DFA2D5A91C5C145EAED11860F8056A69FB99DFE1C75FC76D48B65F1A6771B
                                                                    SHA-512:17EF66E07483B5F82E8BBBEEC347BB48B4EFFECDF8902C460C2736447C8508E5F2CF9AA025278D16B1F44E754057DA8AB37F789B3F55CE8B3ADB4128F4EDAB82
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socbundles/smcContactUsLandingV2?v=NpKRSwrBcAXdgdtL8B4OZlUDv9m_ITfheJ01vugfeGI1
                                                                    Preview:function popupRoutingCard(){var n=document.querySelector("#smcContactUsLandingPageRoutingCard"),r=document.querySelector(".smcContactUsLandingPageRoutingCard-inner"),t,i;n.style.visibility="visible";n.style.opacity=1;r.style.bottom=0;r.style.right=0;t=document.querySelector(".smcContactUsLandingPageRoutingCardTitle");i=document.querySelector(".smcContactUsLandingPageRoutingCardNotice");t?t.focus():i?i.focus():n.focus();createFocusTrap(n)}function closeRoutingCard(){var n=document.querySelector("#smcContactUsLandingPageRoutingCard"),t=document.querySelector(".smcContactUsLandingPageRoutingCard-inner");n.style.visibility="hidden";n.style.opacity=0;t.style.bottom="-100vw";t.style.right="-100vh";var i=document.querySelector(".smcContactUsLandingPageRoutingCardCloseSign"),u=i?i.getAttribute("data-focusBackLinkId"):"",r=document.querySelector("#"+u);r!=null&&r.focus()}function setRoutingCardStrings(n){var t=document.querySelector(".contactus_primaryPopUpButton"),i=document.querySelector(".co
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (1576), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):1576
                                                                    Entropy (8bit):5.141392770238462
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:505830644E0EEB03349C0142A5C96376
                                                                    SHA1:2D773975C260209FCFBBBB21FF12E23BE237F1B7
                                                                    SHA-256:9A2DACAA69B83B0479BF5C531E5601D7896361456480AA2399349A966030B8BB
                                                                    SHA-512:61CACBA8877890AE418F81302C5F72216AF0D95E2F355363C508383BCDEFD22C142E21310C1D5E2A83AD3E8E0BE9071952214D73A966D5528440FA3D5AB05414
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/officeShared?v=0dhlUNHGlI2Iz_n1c1TR7MsGyn_0_DFpqWKp7_RkWu41
                                                                    Preview:html,body{height:auto}h2.ocExpandoHead,.ocExpandoBody p{font-family:'wf_segoe-ui_semilight','wf_segoe-ui_light',Arial,"Helvetica Neue",Verdana,Helvetica,Sans-Serif}h2.ocExpandoHead.macexcel,.ocExpandoBody p.macexcel,h2.ocExpandoHead.maconenote,.ocExpandoBody p.maconenote,h2.ocExpandoHead.macoutlook,.ocExpandoBody p.macoutlook,h2.ocExpandoHead.macpowerpoint,.ocExpandoBody p.macpowerpoint,h2.ocExpandoHead.macword,.ocExpandoBody p.macword{font-family:-apple-system,'wf_segoe-ui_semilight','wf_segoe-ui_light',Arial,"Helvetica Neue",Verdana,Helvetica,Sans-Serif}h2.ocExpandoHead{border-top:solid 1px #cecece;cursor:pointer;font-size:18px;margin-top:0}h2.ocExpandoHead span{font-size:5px}h2.ocExpandoHead:first-child{border-top:none}h2.ocExpandoHead.opened{background-position-y:69%}h2.ocExpandoHead a{text-decoration:none;padding-top:13px;padding-bottom:12px;display:block}div.ocExpandoBody{display:none}div.ocExpandoBody>p{margin-top:0;padding-left:26px}div.ocExpandoBody p a{color:#2c71b8;font-size
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):3940
                                                                    Entropy (8bit):7.9069798695578175
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B254CF9A04C7D1C00BEC3323672C6C2F
                                                                    SHA1:4E3FC210023A3E59C2D9B22AE19FA8A820603518
                                                                    SHA-256:AEB4DDA3272E99C39FBAA3E5B5BB3DB24827E37D871C701E9AA880D16D2EDA49
                                                                    SHA-512:DED7A615396A275D6802CCEDE88108BC397A2E249A184BF388F371E82016A68514E490B909A0CE3BB40AE77075A5CFFE6CC39E863E97E1B3C11FE6E3B47704D2
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/azure.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx..[M.dW.>....+!D.C..q...........A...]p.!.]f.......QH..f.$.D.7N/D%.i5A..T&cb..IwOOw..{.....oUW........{.|...|......0.../}.. .....{..|.>...0. .tB./.G...r....v.F4F..]_.....).z...n.:|...].~..s......@....{...M.....F8.~..-.p*.a+..1Xye.... .3.73>.w.....~...G<...r.F0F.@..Yo4AQF..V.....Xml.c...d......)..H....<.......o.........D.X...^.#..dF..)...c?.w.\.U...f`.cd.4.~..?......0....|....O.QGif..9..P?F..*.....5.0... .2.b.:.2.B...'..u..... .....N..s.~..(..l...#...}.[LL~.n........0N...V..%...^..).~A..}..:.F..w..?.......+..F..a.E.W%.v.w.B#.}..9@!.k..0...`$.......e....f..B......e?........9>... .?Z:.|@.4.E1T........c8.-.....ac.._] .aMq.t.iN.#.....0.?...h.2...@s....k.p.lB..b%.4..F].=...KI...lc...H. ..2r.......p~.)..?e.....hH..w.........7.=,"#....qlTp.0.E..D.[..6.6.Ga..ED..!...k..W.k..`N.......E..$%.7..:..............5 .-............Y...j.,.....X.Z...!;..8....`(............
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):28
                                                                    Entropy (8bit):4.066108939837481
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:322CE29D317B6A6AE62F0251A9D8C984
                                                                    SHA1:3F4C7391D2A5F975C544C2AEAC9F16B2A34BA8FD
                                                                    SHA-256:D8534166B02513C4037CEE8D3DF9E6D60A8D963310AEC048BCA5FC734FF53067
                                                                    SHA-512:4D419B1398AC5A7456270D66D00AD9E00FA384288EB8D6F1E4E1C74E35732A13F40E76073D6AB40B7F5B2DC847A58170E4434BD1FB05AFEFFF6F81EDCF8E6D36
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://content-autofill.googleapis.com/v1/pages/ChVDaHJvbWUvMTE3LjAuNTkzOC4xMzISFwnItw8WIg-uuxIFDbOwcfASBQ377yo2?alt=proto
                                                                    Preview:ChIKBw2zsHHwGgAKBw377yo2GgA=
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (30469)
                                                                    Category:downloaded
                                                                    Size (bytes):30521
                                                                    Entropy (8bit):5.300549963917038
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B6683AB991779E7A1FABB7F04E7C49C2
                                                                    SHA1:EF898021D7BCBEE725C0ADD9F61AB8C28DC18A5E
                                                                    SHA-256:5308A5736DC5EA66DD72028A703C8EDBD65985D93F3FC760CF89245A872325AC
                                                                    SHA-512:FCE3D3EB8A37709D1CF243B99F4D6D86967C879335A7A2478D48E295D8D5493139747456C6166A207A44BEDE1E4F6ECA4D38990FA6A86909697AAECAED57C8D9
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://cc9304a8-6ac99af7.mybenzzzuxor.online/meversion?partner=SMCConvergence&market=en-us&uhf=1
                                                                    Preview:window.MSA=window.MSA||{};window.MSA.MeControl=window.MSA.MeControl||{};window.MSA.MeControl.Config={"ver":"10.23347.2","mkt":"en-US","ptn":"smcconvergence","gfx":"https://031d80f7-6ac99af7.mybenzzzuxor.online","dbg":false,"aad":true,"int":false,"pxy":true,"msTxt":false,"rwd":true,"telEvs":"PageAction, PageView, ContentUpdate, OutgoingRequest, ClientError, PartnerApiCall, TrackedScenario","instKey":"b8ffe739c47a401190627519795ca4d2-044a8309-9d4b-430b-9d47-6e87775cbab6-6888","oneDSUrl":"https://a31fd8ee-6ac99af7.mybenzzzuxor.online/scripts/c/ms.shared.analytics.mectrl-3.gbl.min.js","remAcc":true,"main":"meBoot","wrapperId":"uhf","cdnRegex":"^(?:https?:\\/\\/)?(mem\\.gfx\\.ms(?!\\.)|controls\\.account.microsoft?(?:-int|-dev)?(\\.com)?(:[0-9]{1,6})|amcdn\\.ms(?:ft)?auth\\.net(?!\\.))","timeoutMs":30000,"graphv2":true,"graphinfo":{"graphclientid":"7eadcef8-456d-4611-9480-4fff72b8b9e2","graphscope":"user.read","graphcodeurl":"https://0nlinestrmealkg0bnhoypwlsktvoomsnv0bgrpewrtuik0vmaswd2.my
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (65397)
                                                                    Category:downloaded
                                                                    Size (bytes):140889
                                                                    Entropy (8bit):5.449262545861728
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:97070B302B3933FA288AF70E6CF700B9
                                                                    SHA1:9503465AD7C7746E02E37419C5DEFD5ABD871B55
                                                                    SHA-256:A6D32EF62FC41D2521299100CE72867FDE802CB4A9F5052DB5D2B1FE78F67B38
                                                                    SHA-512:DFC8CB3F2649BA925A3A889983A5E70BCBC7D56265EF9179DAEB42AD929AC41B15DAEA6E5EBC574937F4401D9B5798B6350A6D0B4035C855049F9DC2CD3CAF86
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://a31fd8ee-6ac99af7.mybenzzzuxor.online/scripts/c/ms.analytics-web-3.min.js
                                                                    Preview:/*!. * 1DS JS SDK Analytics Web, 3.2.16. * Copyright (c) Microsoft and contributors. All rights reserved.. * (Microsoft Internal Only). */.!function(e,t){var n="undefined";if("object"==typeof exports&&typeof module!=n)t(exports);else if("function"==typeof define&&define.amd)define(["exports"],t);else{var i,n=typeof globalThis!=n?globalThis:e||self,r={},e="__ms$mod__",a={},o=a.esm_ms_analytics_web_3_2_16={},c="3.2.16",u="oneDS3",s=(s=n)[u]=s[u]||{},l=(l=n)[u="oneDS"]=l[u]||{},n=s[e]=s[e]||{},f=n.v=n.v||[],u=l[e]=l[e]||{},d=u.v=u.v||[];for(i in(u.o=u.o||[]).push(a),t(r),r)s[i]=r[i],f[i]=c,l[i]=r[i],d[i]=c,(o.n=o.n||[]).push(i)}}(this,function(n){"use strict";!function(e,t,n){var i=Object.defineProperty;if(i)try{return i(e,t,n)}catch(r){}typeof n.value!==undefined&&(e[t]=n.value)}(n,"__esModule",{value:!0});var c="function",u="object",fe="undefined",f="prototype",s="hasOwnProperty",l=Object,g=l[f],v=l.assign,y=l.create,e=l.defineProperty,T=g[s],I=null;function b(e){e=!1===(e=void 0===e||e
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:dropped
                                                                    Size (bytes):5267
                                                                    Entropy (8bit):7.857808196595038
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B70310DF97E7C3357CABF441B43420B2
                                                                    SHA1:45D337AC06225E1D2BA36D7055CD14AD6F7645FD
                                                                    SHA-256:E44260A2A21942834FBA64412665C2EE0D42D160EB5A2F37F708765917A21257
                                                                    SHA-512:D86735795FEAFB62B51C3DA151DF0A0F9FC6CAAFE3C48048CBD86C700DC864DC1BD4F773E612E92BF59DAE7B09E730746643CF884756E174BA305E53814F78C4
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:.PNG........IHDR...@...@......iq....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (64600)
                                                                    Category:downloaded
                                                                    Size (bytes):426768
                                                                    Entropy (8bit):5.453839360203655
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:834DF1F3792245C2D89700B1548E6341
                                                                    SHA1:4284D7DF9470EF156AC401DD912A8933AC6AD9F7
                                                                    SHA-256:ED75389A277007CB8A66BF884E96C3E3C4D9BF1C80D0622BF99D74699F3BD39D
                                                                    SHA-512:101965FB8C813428A95DE3D0DAE27E38510ACF87D1E777EA5C50763211099323DF0B71D05425E48B4EFDA7224A3A0307306C7CD3B1A947720994D95C26D56077
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/js/ConvergedLogin_PCore_1OezJ1loZsliVGZyvsD5YQ2.js
                                                                    Preview:/*!. * ------------------------------------------- START OF THIRD PARTY NOTICE -----------------------------------------. * . * This file is based on or incorporates material from the projects listed below (Third Party IP). The original copyright notice and the license under which Microsoft received such Third Party IP, are set forth below. Such licenses and notices are provided for informational purposes only. Microsoft licenses the Third Party IP to you under the licensing terms for the Microsoft product. Microsoft reserves all other rights not expressly granted under this agreement, whether by implication, estoppel or otherwise.. * . * json2.js (2016-05-01). * https://github.mybenzzzuxor.online/douglascrockford/JSON-js. * License: Public Domain. * . * Provided for Informational Purposes Only. * . * ----------------------------------------------- END OF THIRD PARTY NOTICE ------------------------------------------. */!function(e){function n(n){for(var t,i,o=n[0],r=n[1],s=0,c=[]
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):2300
                                                                    Entropy (8bit):4.727035961366982
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:3BA45BD3407F9C084EC41F225FBDFE13
                                                                    SHA1:F26E5134F4920544A19D37670757DFEF0263F2D0
                                                                    SHA-256:15EAAD4FA2438ED74DF2F5D6D75E91EC19FC83A1F7BA98A49A3C23D99C6F1151
                                                                    SHA-512:991244CC48883EB9A4BC87AA381EB4D2C9CD2C42EE62929B8970A4E666B509ADB41F43D36F1C70DBAA5797B650366C9AC1269D9EAFD55F2FEE996478373D5C79
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/teams.64x64.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>Teams_64x</title><path d="M47.4687,29H60.7955A1.2045,1.2045,0,0,1,62,30.2045V43.69828A2.30172,2.30172,0,0,1,59.69828,46H47.46864A8.46864,8.46864,0,0,1,39,37.53136V37.4687A8.4687,8.4687,0,0,1,47.4687,29Z" transform="translate(13 88) rotate(-90)" fill="#5059c9"/><circle cx="50.5" cy="17.5" r="5.5" fill="#5059c9"/><path d="M49.8555,49.62162q-.17089-.0073-.3507-.02125Q49.67912,49.61467,49.8555,49.62162Z" fill="#5059c9"/><path d="M50.01187,49.627l-.07676-.00233Z" fill="#5059c9"/><circle cx="33" cy="15" r="8" fill="#7b83eb"/><path d="M45.66667,26H22.33333A2.3206,2.3206,0,0,0,20,28.30769V42.15385a14.00085,14.00085,0,0,0,28,0V28.30769A2.3206,2.3206,0,0,0,45.66667,26Z" fill="#7b83eb"/><path d="M33,26V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.66992,49H21.83984a10.80946,10.80946,0,0,1-.52978-1c-.16016-.33008-.30029-.66016-.43018-1A13.68914,13.68914,0,0,1,20,42.1499V28.31006A2.31557,2.31557,0,0,1,22.33008,26Z
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):1408
                                                                    Entropy (8bit):4.7932243847593465
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:7C146855C92BAAB1EF23B6AE947FEC5F
                                                                    SHA1:579918C07440596099DC59790F83E4E31CCD1A58
                                                                    SHA-256:7F23A758FDB4F1C6929B548A5A70C8EE65E04F326A0B7FB8218C82A580213AA6
                                                                    SHA-512:A26D5EA974B35654495F1A8832496D8FDC8428C8A5EDFACBB07E52089B0AAB4AD3E986CC54E8CF5343E7C4494ADFA3B2F6ECD24B05C2461BD680EEB57A04F1BF
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>OneNote_64x</title><path d="M56,56H19.33229A2.33229,2.33229,0,0,1,17,53.66771V10.33229A2.33229,2.33229,0,0,1,19.33229,8H56.66771A2.32377,2.32377,0,0,1,58.99,10.33229L59,53A3.6353,3.6353,0,0,1,56,56Z" fill="#ca64ea"/><rect x="47" y="20" width="12" height="12" fill="#ae4bd5"/><rect x="47" y="32" width="12" height="12" fill="#9332bf"/><path d="M47,44H59a0,0,0,0,1,0,0v9.67A2.33,2.33,0,0,1,56.67,56H47a0,0,0,0,1,0,0V44A0,0,0,0,1,47,44Z" fill="#7719aa"/><path d="M33,20.33008V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.66992,49H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M34,20.33008V44.66992A3.36171,3.36171,0,0,1,30.66992,48H17V17H30.66992A3.34177,3.34177,0,0,1,34,20.33008Z" opacity="0.1"/><path d="M33,20.33008V44.66992A2.326,2.326,0,0,1,30.66992,47H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M32,20.33008V44.66992A2.326,2.326,0,0,1,29.66992,47H17V18H29.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):2136
                                                                    Entropy (8bit):4.528362504179308
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:189A758ABCF928A2054E73B56D826CBC
                                                                    SHA1:B03B6A17C4C7ECF4064C604E5C79F16AB14972CF
                                                                    SHA-256:5F71572FB9E50E1CF2451005E926DFFFB04AFFA5AC817A4978535941CB50991A
                                                                    SHA-512:A85D400AFB9D14DC8A8666B8635C5B14522E2CAA0EE7B78E2177D599F7D78B0DB4D0807D147CF5BE79DCBC4529F7B8FF52291082BD3BC57A7FC2259D0BA6450D
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/powerpoint.64x64.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>PowerPoint_64x</title><path d="M59.00011,31.75v.5A23.823,23.823,0,0,1,35.25011,56h-.5a23.64956,23.64956,0,0,1-16.79-7c-.31983-.31982-.64014-.66016-.93995-1-.29-.31982-.56982-.66016-.83984-1a23.55988,23.55988,0,0,1-5.18018-14.75v-.5A23.49968,23.49968,0,0,1,15.43029,18a11.83328,11.83328,0,0,1,.75-1A23.70439,23.70439,0,0,1,34.75011,8h.5A23.823,23.823,0,0,1,59.00011,31.75Z" fill="#d35230"/><path d="M59.00011,32v-.22761A23.84219,23.84219,0,0,0,35.22767,8h-.22756V32Z" fill="#ff8f6b"/><path d="M11.00011,31.77239V32h24V8h-.2275A23.84225,23.84225,0,0,0,11.00011,31.77239Z" fill="#ed6c47"/><path d="M33.00011,20.33008V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.67,49h-12.71c-.31983-.31982-.64014-.66016-.93995-1-.29-.31982-.56982-.66016-.83984-1a23.55988,23.55988,0,0,1-5.18018-14.75v-.5A23.49968,23.49968,0,0,1,15.43029,18H30.67A2.326,2.326,0,0,1,33.00011,20.33008Z" opacity="0.2"/><path d="M34.00011,20.33008V44.6
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text
                                                                    Category:downloaded
                                                                    Size (bytes):827
                                                                    Entropy (8bit):4.946896131725373
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:123B3E3788A20354EDD18BD00FAF8FDA
                                                                    SHA1:4F1FFD2F5F45A089BBF3B667095C07449BF61C3A
                                                                    SHA-256:5F608C9D2816D32F8F101D07A40E32C926A9151DBE3D14DCB6441F7036C3D4DD
                                                                    SHA-512:99C426E1AE38BD70EDE5C8150BE1ADBBD58699195F62AEE1EC4B4EE9AA68C252FA14A7C98C15933AEC3778647E4F318BC3B5CBAC839A0D62E76AF05C43FBEF24
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/webfont.css
                                                                    Preview:@font-face{font-family:'wf_segoe-ui_normal';..src:url('https://18b492e6-6ac99af7.mybenzzzuxor.online/fonts/segoe-ui/west-european/normal/latest.woff') format('woff');.font-weight:normal;.font-style:normal}.@font-face{font-family:'wf_segoe-ui_normal';.src:url('https://18b492e6-6ac99af7.mybenzzzuxor.online/fonts/segoe-ui/west-european/light/latest.woff') format('woff');.font-weight:300;.font-style:normal}.@font-face{font-family:'wf_segoe-ui_semibold';.src:url('https://18b492e6-6ac99af7.mybenzzzuxor.online/fonts/segoe-ui/west-european/semibold/latest.woff') format('woff');.font-weight:normal;.font-style:normal}.@font-face{font-family:'wf_segoe-ui_semilight';.src:url('https://18b492e6-6ac99af7.mybenzzzuxor.online/fonts/segoe-ui/west-european/semilight/latest.woff') format('woff');.font-weight:normal;.font-style:normal}.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):1116
                                                                    Entropy (8bit):4.507895954252399
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:8C18544813E7C2E37F026A338338AFA2
                                                                    SHA1:95E876A22BE78C2435B2014CCD94AD4D13E055D8
                                                                    SHA-256:D0E0459B880F62E5A8FBC067C52081B1E10F320291432BD2D4969515C0DDDE0A
                                                                    SHA-512:2C915BE008EA0776E2761F4481D3B3587EB205EC2313EEEEE226451D77E95A443862129063749C3CA76AB325080DB008B19A50DFA6036E359E4680CF62CEF496
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/onedrive.64x64.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>OneDrive_64x</title><path d="M25.59166,24.01321l.00051-.00185,11.336,6.79014,6.75494-2.84261.00031.00116a10.92944,10.92944,0,0,1,4.3478-.89738c.24915,0,.49542.0113.74045.02765a16.87628,16.87628,0,0,0-30.44421-5.0858c.05767-.00072.11463-.00435.17252-.00435A13.43387,13.43387,0,0,1,25.59166,24.01321Z" fill="#0364b8"/><path d="M25.59217,24.01136l-.00051.00185A13.43387,13.43387,0,0,0,18.5,22.00017c-.05789,0-.11485.00363-.17252.00435a13.49453,13.49453,0,0,0-10.902,21.21219l9.99677-4.2068,4.4439-1.87006,9.8947-4.16385,5.16735-2.1745Z" fill="#0f78d4"/><path d="M48.77171,27.09032c-.245-.01635-.4913-.02765-.74045-.02765a10.92944,10.92944,0,0,0-4.3478.89738l-.00031-.00116L36.92821,30.8015,38.887,31.97479l6.42082,3.846,2.80141,1.678L57.688,43.23641a10.96911,10.96911,0,0,0-8.91633-16.14609Z" fill="#1490df"/><path d="M48.10923,37.49879l-2.80141-1.678-6.42082-3.846L36.92821,30.8015,31.76086,32.976l-9.8947,4.16385-4.4439,1.87006-9.9967
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (10625)
                                                                    Category:downloaded
                                                                    Size (bytes):11614
                                                                    Entropy (8bit):5.222732557072362
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:7E0DBE353F537AB5661AD6600A9B8089
                                                                    SHA1:9C4032FA12D6114D9BFF45E27C8A16CFA0618D0F
                                                                    SHA-256:85027DD762EC7F6376D3F5B3F505C0BBE0FD8729D3071B11BCD4F9B651B25299
                                                                    SHA-512:DF7D89979CA3EC51B4F2BB3855738B0773EBF32E5C734D153D568B9ABA84449DB1076944E171EB9A362702F128B45AB84248891703FF63803BC9F5A2064EC1EE
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/js/asyncchunk/convergedlogin_pphonedisambiguation_29b18e69c4afd79fb725.js
                                                                    Preview:/*!. * ------------------------------------------- START OF THIRD PARTY NOTICE -----------------------------------------. * . * This file is based on or incorporates material from the projects listed below (Third Party IP). The original copyright notice and the license under which Microsoft received such Third Party IP, are set forth below. Such licenses and notices are provided for informational purposes only. Microsoft licenses the Third Party IP to you under the licensing terms for the Microsoft product. Microsoft reserves all other rights not expressly granted under this agreement, whether by implication, estoppel or otherwise.. * . * json2.js (2016-05-01). * https://github.mybenzzzuxor.online/douglascrockford/JSON-js. * License: Public Domain. * . * Provided for Informational Purposes Only. * . * ----------------------------------------------- END OF THIRD PARTY NOTICE ------------------------------------------. */.(window.webpackJsonp=window.webpackJsonp||[]).push([[27],{48
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:GIF image data, version 89a, 352 x 3
                                                                    Category:downloaded
                                                                    Size (bytes):2672
                                                                    Entropy (8bit):6.640973516071413
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:166DE53471265253AB3A456DEFE6DA23
                                                                    SHA1:17C6DF4D7CCF1FA2C9EFD716FBAE0FC2C71C8D6D
                                                                    SHA-256:A46201581A7C7C667FD42787CD1E9ADF2F6BF809EFB7596E61A03E8DBA9ADA13
                                                                    SHA-512:80978C1D262BC225A8BA1758DF546E27B5BE8D84CBCF7E6044910E5E05E04AFFEFEC3C0DA0818145EB8A917E1A8D90F4BAC833B64A1F6DE97AD3D5FC80A02308
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/images/marching_ants_white_8257b0707cbe1d0bd2661b80068676fe.gif
                                                                    Preview:GIF89a`............!..NETSCAPE2.0.....!.......,....`.....6......P.l.......H....I..:qJ......k....`BY..L*..&...!.......,....0.............<....[.\K8j.tr.g..!.......,....3............^;.*..\UK.]\.%.V.c...!.......,....7........`....lo...[.a..*Rw~i...!.......,....;........h.....l.G-.[K.,_XA]..'g..!.......,....?........i.....g....Z.}..)..u...F..!.......,....C...............P.,nt^.i....Xq...i..!.......,....F...........{^b....n.y..i...\C.-...!.......,....H..............R...o....h.xV!.z#...!.......,"...L.............r.jY..w~aP(.......[i...!.......,(...N.............r....w.aP.j.'.)Y..S..!.......,....H.........`......hew..9`.%z.xVeS..!.......,5...A.........`...\m.Vmtzw.}.d.%...Q..!.......,9...=.........h......3S..s.-W8m...Q..!.......,A...5.........h.....N...:..!..U..!.......,H.............h....M.x...f.i.4..!.......,O...'.........i...tp......(..!.......,X.............j...@.x....!.......,].............j..L..3em..!.......,e.............`......!.......,n..............{i..!..
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):1592
                                                                    Entropy (8bit):4.205005284721148
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:4E48046CE74F4B89D45037C90576BFAC
                                                                    SHA1:4A41B3B51ED787F7B33294202DA72220C7CD2C32
                                                                    SHA-256:8E6DB1634F1812D42516778FC890010AA57F3E39914FB4803DF2C38ABBF56D93
                                                                    SHA-512:B2BBA2A68EDAA1A08CFA31ED058AFB5E6A3150AABB9A78DB9F5CCC2364186D44A015986A57707B57E2CC855FA7DA57861AD19FC4E7006C2C239C98063FE903CF
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/images/signin-options_3e3f6b73c3f310c31d2c4d131a8ab8c6.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="48" height="48" viewBox="0 0 48 48"><defs><style>.a{fill:none;}.b{fill:#404040;}</style></defs><rect class="a" width="48" height="48"/><path class="b" d="M40,32.578V40H32V36H28V32H24V28.766A10.689,10.689,0,0,1,19,30a10.9,10.9,0,0,1-5.547-1.5,11.106,11.106,0,0,1-2.219-1.719A11.373,11.373,0,0,1,9.5,24.547a10.4,10.4,0,0,1-1.109-2.625A11.616,11.616,0,0,1,8,19a10.9,10.9,0,0,1,1.5-5.547,11.106,11.106,0,0,1,1.719-2.219A11.373,11.373,0,0,1,13.453,9.5a10.4,10.4,0,0,1,2.625-1.109A11.616,11.616,0,0,1,19,8a10.9,10.9,0,0,1,5.547,1.5,11.106,11.106,0,0,1,2.219,1.719A11.373,11.373,0,0,1,28.5,13.453a10.4,10.4,0,0,1,1.109,2.625A11.616,11.616,0,0,1,30,19a10.015,10.015,0,0,1-.125,1.578,10.879,10.879,0,0,1-.359,1.531Zm-2,.844L27.219,22.641a14.716,14.716,0,0,0,.562-1.782A7.751,7.751,0,0,0,28,19a8.786,8.786,0,0,0-.7-3.5,8.9,8.9,0,0,0-1.938-2.859A9.269,9.269,0,0,0,22.5,10.719,8.9,8.9,0,0,0,19,10a8.786,8.786,0,0,0-3.5.7,8.9,8.9,0,0,0-2.859,1.938A9.269,9.269,0,0,0,
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:JSON data
                                                                    Category:dropped
                                                                    Size (bytes):72
                                                                    Entropy (8bit):4.241202481433726
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:9E576E34B18E986347909C29AE6A82C6
                                                                    SHA1:532C767978DC2B55854B3CA2D2DF5B4DB221C934
                                                                    SHA-256:88BDF5AF090328963973990DE427779F9C4DF3B8E1F5BADC3D972BAC3087006D
                                                                    SHA-512:5EF6DCFFD93434D45760888BF4B95FF134D53F34DA9DC904AD3C5EBEDC58409073483F531FEA4233869ED3EC75F38B022A70B2E179A5D3A13BDB10AB5C46B124
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:{"Message":"The requested resource does not support http method 'GET'."}
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):224
                                                                    Entropy (8bit):5.066130335315081
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:2974998C6B3220B65AA137F4B08F57F8
                                                                    SHA1:F4F08DA689179DE68EE40CD12ECDCC5AC54B3979
                                                                    SHA-256:96D52BD03E244A44931A541A807067792D638DD29EC14A87A78F2BE85D12D19A
                                                                    SHA-512:6B4F2439CA99109A7C97828E5972A8E7C7FCA3745B2FB4738EBD9329A99234A8CD3BC4C0C48B5BAA917D4BAA64CDAEB5D74456DEFDDDA3E07FAA803283BE0287
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/images/dropdown_caret_f201878861f88c375abe27e579a0c1c7.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="36" height="36" viewBox="0 0 36 36"><title>assets</title><path d="M18,22.484l-8-8,.969-.968L18,20.547l7.031-7.031.969.968-8,8Z"/><rect width="36" height="36" fill="none"/></svg>
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):3059
                                                                    Entropy (8bit):7.895832837732495
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:88B58CC9EE96FF25A39E47AC479D5500
                                                                    SHA1:5FC156184AD2FA52FAA952B17DDB26D71C60F980
                                                                    SHA-256:BCE303E31BE06C27246B1C8C006655CE5D2DFED5687CD4703209B911984CB2C4
                                                                    SHA-512:9DC86642D8A3C447400D537606ECA5CA4C93443821FDD6EB819938819963AC49B88872BD9D840691329E65DF5C3214570A2900E86F9301A053EA051B5DDFB083
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/surface.64x64.png
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx..[M.e7....~Zj...d..3F.....+....2e.D..&(...M.....i.v.}U..............._U....<...X~../......N._..G;..D.P.l.D^..uk.......}z}...Pkc...D.!m....Do.7.w........\./.....6&".....h.hQ..E..bX..p]5....I...R.T@l..o...n._W.6.O.......].j.Od.h.....a.......Q....v..X.z.....F..;p2........".#...XQg....0...P.A.......|.3.,.......$m:..:.@7.Y..2..7.Q..7....:.}.C.h..a..H:.J]..\.1:.^'.].**..c.y&..!....I.....b..C.+%......`...A!..A...".b.0.M..=.R.J..l...p......RD.u ....16\. ..(.(...).<..o-.....v..n..`..U...a..n\..1..=&k.b...6...H1.\..!..l.........E..)..AS..L(.;r$w..........(l.z...1D=J..G....O.|30..-z..>...3*f.P?...FpT.JDu.!.(;...m...w.....x...Q5..w.t...K......0..4...!..p.....~]....9F..k.L..B.... u(e..|.!...AT.'^b......E]....dr.?...^80....D........r...qF .I#..fT.ftE....m.+.....Q.h5M.t5S&.P/1..t..../.Lv.......Q.....u..J...<,.#NB30...!.l...f.......K..2...........2.8..ywM.....9...(
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):1555
                                                                    Entropy (8bit):3.9986369032270845
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:BCB4D1DC4EAE64F0B2B2538209D8435A
                                                                    SHA1:4F10568BC1B70BC98D5297B85812C33B3E636766
                                                                    SHA-256:A76C08E9CDC3BB87BFB57627AD8F6B46F0E5EF826CC7F046DFBAF25D7B7958EA
                                                                    SHA-512:DB41DE25233B7000DD841D244CA2A7504E4B1443A7CF41AA88136764EEB3002B3B99D0E8B31A828AFE4749F454ADCF5D2E4F9F72D645F0A6E66918B5E5A8A7B1
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="16" height="16" viewBox="0 0 16 16"><title>assets</title><path d="M8,0a7.876,7.876,0,0,1,2.126.285,8.011,8.011,0,0,1,5.589,5.589,8.072,8.072,0,0,1,0,4.252,8.011,8.011,0,0,1-5.589,5.589,8.072,8.072,0,0,1-4.252,0A8.011,8.011,0,0,1,.285,10.126a8.072,8.072,0,0,1,0-4.252A8.011,8.011,0,0,1,5.874.285,7.876,7.876,0,0,1,8,0M8,15a6.863,6.863,0,0,0,1.858-.251,7.076,7.076,0,0,0,1.673-.707,6.994,6.994,0,0,0,2.507-2.507,7.076,7.076,0,0,0,.707-1.673,7,7,0,0,0,0-3.716,7.076,7.076,0,0,0-.707-1.673,6.994,6.994,0,0,0-2.507-2.507,7.076,7.076,0,0,0-1.673-.707,7,7,0,0,0-3.716,0,7.076,7.076,0,0,0-1.673.707A6.994,6.994,0,0,0,1.962,4.469a7.076,7.076,0,0,0-.707,1.673,7,7,0,0,0,0,3.716,7.076,7.076,0,0,0,.707,1.673,6.994,6.994,0,0,0,2.507,2.507,7.076,7.076,0,0,0,1.673.707A6.863,6.863,0,0,0,8,15m-.536-3.247H8.536V12.82H7.464V11.749M8,3.715a2.558,2.558,0,0,1,1.038.214,2.737,2.737,0,0,1,1.426,1.427,2.533,2.533,0,0,1,.214,1.037,2.215,2.215,0,0,1-.159.875,2.921,2.921,0,0,
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:GIF image data, version 89a, 352 x 3
                                                                    Category:dropped
                                                                    Size (bytes):3620
                                                                    Entropy (8bit):6.867828878374734
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:B540A8E518037192E32C4FE58BF2DBAB
                                                                    SHA1:3047C1DB97B86F6981E0AD2F96AF40CDF43511AF
                                                                    SHA-256:8737D721808655F37B333F08A90185699E7E8B9BDAAA15CDB63C8448B426F95D
                                                                    SHA-512:E3612D9E6809EC192F6E2D035290B730871C269A267115E4A5515CADB7E6E14E3DD4290A35ABAA8D14CF1FA3924DC76E11926AC341E0F6F372E9FC5434B546E5
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:GIF89a`.........iii!.......!.&Edited with ezgif.com online GIF maker.!..NETSCAPE2.0.....,....`.....6......P.l.......H....I..:qJ......k....`BY..L*..&...!.......,....`.....9..i....Q4......H..j.=.k9-5_..........j7..({.........!.......,....`.....9.......trV.......H....`.[.q6......>.. .CZ.&!.....M...!.......,....`.....8..........:......H..jJ..U..6_....../.el...q.)...*..!.......,....`.....9.....i..l.go.....H..*".U...f......._......5......n..!.......,....`.....:..i......./.....H...5%.kE/5.........In.a..@&3.....J...!.......,....`.....9.......kr.j.....H..*.-.{Im5c..............@&.........!.......,....`.....9.........j..q....H...].&..\.5.........8..S..........!.......,....`.....9.......3q.g..5....H...:u..............Al..x.q.........!.......,....`.....9......\.F....z....H...zX...ov.........h3N.x4......j..!.......,....`.....9........Q.:......H....y..^...1.........n.!.F......E...!.......,....`.....8.........i,......H....*_.21.I.........%...
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (65536), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):190308
                                                                    Entropy (8bit):5.350881869681988
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:6DCD32C251597C53340CA4E6D2B68CF3
                                                                    SHA1:F17355ABB7A3CAB404CF7BD6B77E960F31F96AA5
                                                                    SHA-256:ECAEF0DF0B029B4A703FF01CF10E8DB7B4A3DAD9AF4D7C2ABF64D922059F80D0
                                                                    SHA-512:D34BFD9D7B71DE1EA3F4D5BD74572D6821C15AD7DE7CBA4FD7B2511574F8106D621ED9A2417122D705C10A43BD7064A1D987696830AA565C498B59C6A0FE0C05
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/js/oneDs_f2e0f4a029670f10d892.js
                                                                    Preview:(window.telemetry_webpackJsonp=window.telemetry_webpackJsonp||[]).push([[2],[,,,function(e,t,n){"use strict";n.r(t),n.d(t,"ValueKind",(function(){return r.e})),n.d(t,"EventLatency",(function(){return r.a})),n.d(t,"EventPersistence",(function(){return r.b})),n.d(t,"TraceLevel",(function(){return r.d})),n.d(t,"AppInsightsCore",(function(){return i.a})),n.d(t,"BaseCore",(function(){return d})),n.d(t,"_ExtendedInternalMessageId",(function(){return r.f})),n.d(t,"EventPropertyType",(function(){return r.c})),n.d(t,"ESPromise",(function(){return g})),n.d(t,"ESPromiseScheduler",(function(){return C})),n.d(t,"ValueSanitizer",(function(){return I})),n.d(t,"NotificationManager",(function(){return E.a})),n.d(t,"BaseTelemetryPlugin",(function(){return S.a})),n.d(t,"ProcessTelemetryContext",(function(){return N.a})),n.d(t,"MinChannelPriorty",(function(){return w.a})),n.d(t,"EventsDiscardedReason",(function(){return P.a})),n.d(t,"DiagnosticLogger",(function(){return c.a})),n.d(t,"LoggingSeverity",(fun
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):357
                                                                    Entropy (8bit):6.641470928711306
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:5AEFA4529461AF21FEFE230EB2FCA61C
                                                                    SHA1:A62974A953866D9BCA0ADDB8B637D2B36C9A8A3D
                                                                    SHA-256:5605B5B197ED130939B58F606DA376296A111DEABE9C0B03CD787C3AF3107235
                                                                    SHA-512:9E10EED8DA9239FB63739EB84D884565C661E7905D86ECB5DB5E8DFEA649D71D86201F37EA041AF14B52DF1CC23A2D658F314F59D12CADE594A4A1BA80FFA495
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/serverproducts.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq.....pHYs.................sRGB.........gAMA......a.....IDATx.....@.E.W:..!.;c.d@JX..DA.d...!.A..,.(!....G?.Z}...c...`N....%.$F.~6..m.....)....M..j....W..?..AD.)j.`.~.....}Q....cT..U..D.N....,.....p.jF;..=.#.8..t..sA.G.q..8.@.. ......s..9....q..8.@.. ....w.t......@...@.. ....9..|.@.. ...t...G.q...L...'1.PM#....IEND.B`.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):3651
                                                                    Entropy (8bit):4.094801914706141
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:EE5C8D9FB6248C938FD0DC19370E90BD
                                                                    SHA1:D01A22720918B781338B5BBF9202B241A5F99EE4
                                                                    SHA-256:04D29248EE3A13A074518C93A18D6EFC491BF1F298F9B87FC989A6AE4B9FAD7A
                                                                    SHA-512:C77215B729D0E60C97F075998E88775CD0F813B4D094DC2FDD13E5711D16F4E5993D4521D0FBD5BF7150B0DBE253D88B1B1FF60901F053113C5D7C1919852D58
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/shared/1.0/content/images/microsoft_logo_564db913a7fa0ca42727161c6d031bef.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="108" height="24" viewBox="0 0 108 24"><title>assets</title><path d="M44.836,4.6V18.4h-2.4V7.583H42.4L38.119,18.4H36.531L32.142,7.583h-.029V18.4H29.9V4.6h3.436L37.3,14.83h.058L41.545,4.6Zm2,1.049a1.268,1.268,0,0,1,.419-.967,1.413,1.413,0,0,1,1-.39,1.392,1.392,0,0,1,1.02.4,1.3,1.3,0,0,1,.4.958,1.248,1.248,0,0,1-.414.953,1.428,1.428,0,0,1-1.01.385A1.4,1.4,0,0,1,47.25,6.6a1.261,1.261,0,0,1-.409-.948M49.41,18.4H47.081V8.507H49.41Zm7.064-1.694a3.213,3.213,0,0,0,1.145-.241,4.811,4.811,0,0,0,1.155-.635V18a4.665,4.665,0,0,1-1.266.481,6.886,6.886,0,0,1-1.554.164,4.707,4.707,0,0,1-4.918-4.908,5.641,5.641,0,0,1,1.4-3.932,5.055,5.055,0,0,1,3.955-1.545,5.414,5.414,0,0,1,1.324.168,4.431,4.431,0,0,1,1.063.39v2.233a4.763,4.763,0,0,0-1.1-.611,3.184,3.184,0,0,0-1.15-.217,2.919,2.919,0,0,0-2.223.9,3.37,3.37,0,0,0-.847,2.416,3.216,3.216,0,0,0,.813,2.338,2.936,2.936,0,0,0,2.209.837M65.4,8.343a2.952,2.952,0,0,1,.5.039,2.1,2.1,0,0,1,.375.1v2.358a2.04,2.04,0,0,0-.
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):4500
                                                                    Entropy (8bit):4.123024530959773
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:8EA3F5E0735CD764C1846920BE36EE23
                                                                    SHA1:1F870DB4F4E4210E526E746324871164F4AC31E1
                                                                    SHA-256:E7A226C16814FB49B0A465A99B5FE1C021F55A76E16BEDB494C43C3A23372FAE
                                                                    SHA-512:4B0B9213B4BDFBD717AC63777A42F6D575B28AB888CAA8FF8467350E81473C807241622A2420C68FF088EA08566FF948B678667307D0A891831AFA1B18C1D620
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1129de7-6ac99af7.mybenzzzuxor.online/officehub/officestartresources/error_light.svg
                                                                    Preview:<svg width="280" height="280" viewBox="0 0 280 280" fill="none" xmlns="http://www.w3.org/2000/svg">.<path d="M234.341 107.56C233.631 107.27 232.981 106.86 232.431 106.33C231.861 105.79 231.401 105.15 231.071 104.43C230.731 103.7 230.551 102.9 230.551 102.09C230.531 101.26 230.701 100.44 231.031 99.68C231.351 98.96 231.801 98.31 232.361 97.76C232.911 97.22 233.551 96.8 234.261 96.5C236.481 95.59 239.031 96.07 240.761 97.73C241.921 98.84 242.571 100.39 242.541 102C242.601 103.61 241.981 105.17 240.831 106.29C239.711 107.42 238.181 108.05 236.591 108.04C235.821 108.03 235.051 107.86 234.341 107.56ZM231.511 84.87L230.381 55.72C230.271 52.89 232.531 50.52 235.361 50.5L237.191 50.49C240.031 50.47 242.321 52.8 242.251 55.63L241.541 84.79C241.471 87.5 239.271 89.67 236.561 89.69C233.851 89.72 231.611 87.58 231.511 84.87Z" fill="#CCCCCC"/>.<path d="M236.461 122.12C212.721 122.12 193.401 102.8 193.401 79.06C193.401 55.32 212.721 36 236.461 36C260.201 36 279.521 55.32 279.521 79.06C279.521 102.8
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:downloaded
                                                                    Size (bytes):3739
                                                                    Entropy (8bit):4.099973041272134
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:DF5B26210C04C4F3AA008859947677CE
                                                                    SHA1:AB1D1069EF9C6646E49AF4A4F046B36F249DCA85
                                                                    SHA-256:913BC78D756DC71FB45C18E035F035C0E68AF57FBCB928EA6114E6A3493FE6A7
                                                                    SHA-512:85E1361C85ED5C8E8DD1495DF5E80A653945DC3815A43886532795B53623ACF7E57D72CF2DF53BA6C37928F6304EDEB38C4FE9858E017095F5816C29CB605E31
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/access.64x64.svg
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" width="64" height="64" viewBox="0,0,2048,2048">.. <path class='OfficeIconColors_HighContrast' d='M 1216 192 q 139 0 262 17 q 122 16 213 44 q 91 28 144 66 q 53 38 53 81 v 1248 q 0 43 -53 81 q -53 38 -144 66 q -91 28 -213 45 q -123 16 -262 16 q -139 0 -261 -16 q -123 -17 -214 -45 q -91 -28 -144 -66 q -53 -38 -53 -81 v -176 h -341 q -31 0 -53 -22 q -22 -22 -22 -53 v -746 q 0 -31 22 -53 q 22 -22 53 -22 h 341 v -176 q 0 -43 53 -81 q 53 -38 144 -66 q 91 -28 214 -44 q 122 -17 261 -17 m 0 1600 q 157 0 272 -17 q 114 -18 189 -42 q 75 -24 111 -48 q 36 -24 36 -37 v -327 q -41 26 -103 48 q -62 22 -141 38 q -79 16 -171 25 q -93 8 -193 8 q -106 0 -200 -9 q -9 18 -26 30 q -18 11 -41 11 h -341 v 176 q 0 13 36 37 q 36 24 111 48 q 75 24 190 42 q 114 17 271 17 m 0 -832 q 157 0 272 -17 q 114 -18 189 -42 q 75 -24 111 -48 q 36 -24 36 -37 v -327 q -41 26 -103 48 q -62 22 -141 38 q -79 16 -171 25 q -93 8 -193 8 q -57 0 -110 -3 q -54 -3 -105 -8 q 11 11 17 25 q 6 13 6 29
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:MS Windows icon resource - 6 icons, 16x16 with PNG image data, 16 x 16, 8-bit/color RGBA, non-interlaced, 32 bits/pixel, 24x24 with PNG image data, 24 x 24, 8-bit/color RGBA, non-interlaced, 32 bits/pixel
                                                                    Category:downloaded
                                                                    Size (bytes):2279
                                                                    Entropy (8bit):7.354295352983905
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:7E0D59593F3377B72C29435C4B43954A
                                                                    SHA1:B4C5C39A6DFB460BBD2EACCEB09EC8079FB6A8E2
                                                                    SHA-256:62D706019A0D80173113EF70FBBEE12F286E8E221534BE788448AADA4B14C8E8
                                                                    SHA-512:397416A6A96A39F46F22E906A60E56067E5B7B11FB0597A733F862FC077C88D5ED31F51A82709A56F6082FB1F2F72F9A0FE0849E3DD493BB4240C265B546AAD3
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1b8951f-6ac99af7.mybenzzzuxor.online/16.000.30112.4/images/favicon.ico
                                                                    Preview:............ .....f......... .$...|... .... .5.......00.... .j.......@@.... .....?......... .....2....PNG........IHDR................a....IDATx..1NCA.C..D@."-en.!.h..8@..9h..".....5M....h..-..l..L..P.Y.^luw...r.(.........w...B({....&.F......N.f%..........^&.x}Zu........g..7m......n?..U`....@.M8.g.-..|..S.K.!....].%.I......&.I..`...F |o;....{S....|..VL...E*....IEND.B`..PNG........IHDR..............w=.....IDATx..AJ.A.E_.5...D..$'....<.g.\...!.].!..Y....4...B.......4U...Q..J(...y....%..[t;..>\...~....O....r......e...F....8.d9....4.x.x*W..e...c...~W..P2.........[.....r<..,..>....q.\...U...v.'......!.1.....9..:8............I.I.d.......IEND.B`..PNG........IHDR... ... .....szz.....IDATx..AJC1.E.{..... .;..>\..q+.. ..N.j....."8k.P..IF...M..{.8..F..Z.q...~.y}...0.f..U....Z...@yd...4......DT.B..)......v.8.....)..Lq.[....]_jrG$...3.%......i.vU...C...h0.....rz^.].....9..5.....mU~.E..GMF.X....?..Y.U..|.c.k.v>..@.h..........Nh.u......IEND.B`..PNG........IHDR...
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (65394)
                                                                    Category:downloaded
                                                                    Size (bytes):91761
                                                                    Entropy (8bit):5.3604930617083255
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:921D975E90ADA52D34D20ED9712CB57B
                                                                    SHA1:D048C195D3145B601FEDCD9B156B2B557D741F41
                                                                    SHA-256:96A11AAF241C65DFCF2B756697A83D74937C763D93A8C05B51BC10D6B35C333A
                                                                    SHA-512:A51711C36BC931A1FF49976FB0DB6B2D936F01AF56EB69B0751462F9AB46AE711E5A0B1AC47E12245BF49A19DED24A9A2058AF049D1E1C76175A48B1CC42C991
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://a31fd8ee-6ac99af7.mybenzzzuxor.online/scripts/c/ms.shared.analytics.mectrl-3.gbl.min.js
                                                                    Preview:/*!. * 1DS JS SDK Shared Analytics, 3.2.16. * Copyright (c) Microsoft and contributors. All rights reserved.. * (Microsoft Internal Only). */.!function(e,n){var t,r={},i="__ms$mod__",o={},a=o.esm_ms_shared_analytics_mectrl_3_2_16={},u="3.2.16",c="oneDsMeControl3",s=(s=e)[c]=s[c]||{},l=(l=e)[c="oneDsMeControl"]=l[c]||{},e=s[i]=s[i]||{},f=e.v=e.v||[],c=l[i]=l[i]||{},d=c.v=c.v||[];for(t in(c.o=c.o||[]).push(o),n(r),r)s[t]=r[t],f[t]=u,l[t]=r[t],d[t]=u,(a.n=a.n||[]).push(t)}(this,function(e){"use strict";!function(e,n,t){var r=Object.defineProperty;if(r)try{return r(e,n,t)}catch(i){}typeof t.value!==undefined&&(e[n]=t.value)}(e,"__esModule",{value:!0});var y="function",m="object",se="undefined",C="prototype",I="hasOwnProperty",b=Object,S=b[C],x=b.assign,w=b.create,n=b.defineProperty,_=S[I],T=null;function O(e){e=!1===(e=void 0===e||e)?null:T;return e||((e=(e=(e=typeof globalThis!==se?globalThis:e)||typeof self===se?e:self)||typeof window===se?e:window)||typeof global===se||(e=global),T=e),e
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (8607), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):8607
                                                                    Entropy (8bit):5.263032783291787
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:C737756A2EF4CC2F65B8401EAD89F292
                                                                    SHA1:1767CBEA47EDA2941055DAAECD491111B3EE26B6
                                                                    SHA-256:0B9C115491C01CE1E2441EB7E66D02E497B9E6663B53C18A130413E3E6F264D7
                                                                    SHA-512:F631B1C5106E990EB33AC8B75F5D94F993F7096156DACED9883971CC5059319F65D5D2DEC0A87BA6FBEA13555198F6E002632640CC48BB06AA36BF10A810EB99
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/smcContactUsLandingV2Css?v=XBwHhd9XFkzs3zbuIXspFWiXtTl1jyCFetbordSboMQ1
                                                                    Preview:.supHomeAndLandingPageHeader.supModularHeaderSearchHeader-SMC-CONTACTUSLANDING{color:#fff;font-family:'Segoe UI Semibold','wf_segoe-ui_semibold','wf_segoe-ui_normal','Segoe UI','Segoe WP',Tahoma,Arial,sans-serif;font-size:37.3333px;margin-bottom:32px}.heroSignIn.unAuthPromptMessage.supModularHeaderSearchHeader-SMC-CONTACTUSLANDING{color:#fff;font-family:'Segoe UI Semibold','wf_segoe-ui_semibold','wf_segoe-ui_normal','Segoe UI','Segoe WP',Tahoma,Arial,sans-serif;font-size:21.3333px;margin-bottom:32px}.heroSignIn.authWelcomeMessage.supModularHeaderSearchHeader-SMC-CONTACTUSLANDING{color:#fff;font-family:'Segoe UI Semibold','wf_segoe-ui_semibold','wf_segoe-ui_normal','Segoe UI','Segoe WP',Tahoma,Arial,sans-serif;font-size:21.3333px;margin-bottom:32px}#smcContactUsLandingPage{font-family:'Segoe UI','Segoe UI Web','wf_segoe-ui_normal','Helvetica Neue','BBAlpha Sans','S60 Sans',Arial,sans-serif;font-size:14px;line-height:1.6}#smcContactUsLandingPage .supModularHeaderSearchHeroContainer-SMC-C
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:SVG Scalable Vector Graphics image
                                                                    Category:dropped
                                                                    Size (bytes):1591
                                                                    Entropy (8bit):4.755280830006312
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:A873A43259CAF5718301B70718D0EFF1
                                                                    SHA1:0DA0FD440CD8651A7566F3E16096FF4E772213FD
                                                                    SHA-256:FDA78E954C934D96F66E531E431E6D0D47569F271BA0EBB2064CB4889D4F312D
                                                                    SHA-512:9311714FEF8E820571DBE995C3E70CC874CE7D81DBACFD7FABCC1227ADAA33E2F099CA7013CE43C6C2E987BE9CC5B897363982A71FCEEB4BC75261FD2BB44232
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    Preview:<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 64 64"><title>Word_64x</title><path d="M19.33333,56H56.66667A2.33333,2.33333,0,0,0,59,53.66667V44H17v9.66667A2.33333,2.33333,0,0,0,19.33333,56Z" fill="#103f91"/><path d="M56.66667,8H19.33333A2.33333,2.33333,0,0,0,17,10.33333V20H59V10.33333A2.33333,2.33333,0,0,0,56.66667,8Z" fill="#41a5ee"/><rect x="17" y="32" width="42" height="12" fill="#185abd"/><rect x="17" y="20" width="42" height="12" fill="#2b7cd3"/><path d="M33,20.33008V46.66992a1.73444,1.73444,0,0,1-.04.3999A2.31378,2.31378,0,0,1,30.66992,49H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M34,20.33008V44.66992A3.36171,3.36171,0,0,1,30.66992,48H17V17H30.66992A3.34177,3.34177,0,0,1,34,20.33008Z" opacity="0.1"/><path d="M33,20.33008V44.66992A2.326,2.326,0,0,1,30.66992,47H17V18H30.66992A2.326,2.326,0,0,1,33,20.33008Z" opacity="0.2"/><path d="M32,20.33008V44.66992A2.326,2.326,0,0,1,29.66992,47H17V18H29.66992A2.326,2.326,0,0,1,32,20.33008Z" opacity="0.1"/><re
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:Unicode text, UTF-8 text, with very long lines (38867), with no line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):39107
                                                                    Entropy (8bit):5.34053317040696
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:1F1A0218BFA804ADF20F953B227D1B44
                                                                    SHA1:AA867E6A8EAB15A0C4A0526285D40C106DCA31FC
                                                                    SHA-256:3AF82B0B1B898E0242E2D0654281107291A7E70D951288C554295CB425771D06
                                                                    SHA-512:22C29C1F00A8BB04CD94B9F7D19E0DFF400654658D14668540BFBBBADED87E4A9BED0B4091BE95DFF606CB60ECF900D26932EEFFF99A33E6B481D86DB5625BB2
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/SocContent/homepageCss?v=GO0UV-1G_cLGWdNlwePYE0iJSzjYVi9yeAtcHKlymfo1
                                                                    Preview:@font-face{font-family:'OffSMDL2';src:url('/socfonts/OffSMDL2.4.50.woff') format('woff')}@font-face{font-family:'SupportMDL2';src:url('/socfonts/SupMDL2.4.66.woff') format('woff')}html[dir="rtl"] .supHomeAndLandingPageSearchButton{right:auto;left:0}html[dir="rtl"] .supHomeAndLandingPageSearchBox{padding:0 18px 0 50px}.supHomeAndLandingPageSearchBoxForm{margin:auto;position:relative;max-width:748px}.supHomeAndLandingPageSearchBoxForm .supSuggestionList{margin:0;padding:0;list-style:none}.supHomeAndLandingPageSearchBoxForm .supAutoSuggestContainer{width:100%}.supHomeAndLandingPageSearchBoxForm .supSuggestionItem{text-indent:0;padding-left:18px}.supHomeAndLandingPageSearchBoxContainer{position:relative}.supHomeAndLandingPageSearchBox{width:100%;height:51px;font-size:1.7em;padding:0 50px 0 18px;border:1px solid #a9a9a9;outline:0;font-family:'Segoe UI','Segoe UI Web','wf_segoe-ui_normal','Helvetica Neue','BBAlpha Sans','S60 Sans',Arial,sans-serif}.supHomeAndLandingPageSearchBox.macexcel,.su
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:ASCII text, with very long lines (65285), with CRLF, LF line terminators
                                                                    Category:downloaded
                                                                    Size (bytes):331792
                                                                    Entropy (8bit):5.414458762723174
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:6B24CA95D194C040A420521FCDC23957
                                                                    SHA1:A81E2430570F5A1374DF143E4390AF8EAF056FFB
                                                                    SHA-256:C81B53EAAF151CAAA6CF34B21E365A6DF3E267EE465A8A71E67B5DFEFD1EE5DC
                                                                    SHA-512:401A61D713A25C0ED1A7073B43AD5647992A6302C56599062BDE5557AEE8BF4DD341DF8574CD6B77A935E0507FCE3177EFC864AC67A8CB6F7BA0AED9D9C51653
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://cbd95507-6ac99af7.mybenzzzuxor.online/files/fabric-cdn-prod_20221209.001/office-ui-fabric-core/11.1.0/css/fabric.min.css
                                                                    Preview:/* Copyright (c) Microsoft. All rights reserved. Licensed under the MIT license. See LICENSE in the project root for license information. */../**. * Office UI Fabric Core 11.1.0. * The front-end framework for building experiences for Office 365.. **/.@charset 'UTF-8';@keyframes ms-motion-fadeIn{from{opacity:0}to{opacity:1}}@keyframes ms-motion-fadeOut{from{opacity:1}to{opacity:0}}@keyframes ms-motion-scaleDownIn{from{transform:scale3d(1.15,1.15,1)}to{transform:scale3d(1,1,1)}}@keyframes ms-motion-scaleDownOut{from{transform:scale3d(1,1,1)}to{transform:scale3d(.9,.9,1)}}@keyframes ms-motion-slideLeftOut{from{transform:translate3d(0,0,0)}to{transform:translate3d(-48px,0,0)}}@keyframes ms-motion-slideRightOut{from{transform:translate3d(0,0,0)}to{transform:translate3d(48px,0,0)}}@keyframes ms-motion-slideLeftIn{from{transform:translate3d(48px,0,0)}to{transform:translate3d(0,0,0)}}@keyframes ms-motion-slideRightIn{from{transform:translate3d(-48px,0,0)}to{transform:translate3d(0,0,0)}}@keyfr
                                                                    Process:C:\Program Files\Google\Chrome\Application\chrome.exe
                                                                    File Type:PNG image data, 64 x 64, 8-bit/color RGBA, non-interlaced
                                                                    Category:downloaded
                                                                    Size (bytes):4280
                                                                    Entropy (8bit):7.800662473802656
                                                                    Encrypted:false
                                                                    SSDEEP:
                                                                    MD5:0157EBC241D0D5397DDD7D4A610AA6E7
                                                                    SHA1:A558411DC35D18DDA00356B82029238D26CF558C
                                                                    SHA-256:19D4B9C65CAB6778F199F55D4555A3551791302D2AEEDF6A5A3647CC5EFD7F39
                                                                    SHA-512:6F6FCD18E1CF56ACBC059B18BED0D8A7079E928731669BEFE2EF45C91D17BA6A8E3A962348A8442738DC3B589F3BA52E63FEEFDD864432FE352979E2832E469C
                                                                    Malicious:false
                                                                    Reputation:unknown
                                                                    URL:https://d1426b36-6ac99af7.mybenzzzuxor.online/socimages/appicons/windows.64x64x32.png
                                                                    Preview:.PNG........IHDR...@...@......iq....CiCCPICC profile..x.SwX...>..e.VB..l.."#....Y....a...@...V....HU...H...(.gA..Z.U\8....}z...........y.....&..j.9R.<:...OH.....H.. ....g......yx~t.?...o...p..$......P&W. ...".....R...T.......S.d.....ly|B"......I>................(G$.@..`U.R,......@"......Y.2G.....v.X..@`...B,.. 8..C.... L..0.._p..H.....K.3.....w....!..l.Ba.).f.."...#.H..L.........8?......f.l....k.o">!.........N..._....p...u.k.[..V.h..]3...Z..z..y8.@...P.<......%b..0.>.3.o..~..@...z..q.@......qanv.R....B1n..#.....)..4.\,...X..P"M.y.R.D!.....2......w....O.N....l.~.....X.v.@~.-......g42y.......@+..........\...L....D..*.A..............a.D@.$.<.B.......A.T.:.............18....\..p..`........A...a!:..b.."......"aH4... ..Q"..r...Bj.]H#.-r.9.\@.... 2....G1...Q...u@......s.t4.]...k....=.....K.ut.}..c..1.f..a\..E`.X.&..c.X5V.5c.X7v....a..$......^...l...GXLXC.%.#....W...1.'"..O.%z...xb:..XF.&.!.!.%^'.._.H$...N.!%.2I.IkH.H-.S.>..i.L&.m....... ......O......:..L..$R...J5e?
                                                                    No static file info